RDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon_linux_2023 | — | Upgrade wireshark-develUpgrade wireshark-cli-debuginfoUpgrade wireshark-debugsourceUpgrade wireshark-cli | May 19, 2026 | Apr 30, 2026 |
| Debian | — | Upgrade wireshark | May 7, 2026 | May 7, 2026 |
| Redhat_linux | — | Upgrade wireshark-debugsourceUpgrade wireshark-develUpgrade wireshark-cliUpgrade wireshark-debuginfoUpgrade wireshark-cli-debuginfoUpgrade wireshark | May 27, 2026 | Apr 30, 2026 |
| Rocky_linux | — | Upgrade wireshark-debuginfoUpgrade wiresharkUpgrade wireshark-develUpgrade wireshark-cliUpgrade wireshark-debugsourceUpgrade wireshark-cli-debuginfo | Jun 8, 2026 | Jun 4, 2026 |
| Wireshark | — | Upgrade to Wireshark version 4.4.15Upgrade to Wireshark version 4.6.5 | May 4, 2026 | May 4, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub