{"id":"SUSE-SU-2026:23124-1","summary":"Security update for wireshark","details":"This update for wireshark fixes the following issues:\n\nUpdate to version 4.4.17.\n\n- CVE-2026-6867: SMB2 protocol dissector crash (bsc#1263727).\n- CVE-2026-7375: UDS protocol dissector infinite loop (bsc#1263761).\n- CVE-2026-7376: Sharkd utility crash (bsc#1263760).\n- CVE-2026-7378: Sharkd utility crash (bsc#1263759).\n- CVE-2026-7379: Sharkd utility memory leak (bsc#1263758).\n- CVE-2026-9759: ROHC protocol dissector crash (bsc#1266670).\n- CVE-2026-15163: Denial of Service via multiple protocol dissector infinite loops (bsc#1271133).\n- CVE-2026-15164: Denial of Service vulnerability in ciscodump (bsc#1271134).\n- CVE-2026-15166: Denial of Service via IEEE 802.11 protocol dissector crash (bsc#1271136).\n- CVE-2026-15167: Denial of Service via DBS Etherwatch file parser crash (bsc#1271137).\n- CVE-2026-15168: BLF file parser allows possible information disclosure (bsc#1271138).\n- CVE-2026-15169: Denial of Service via UMTS FP protocol dissector crash (bsc#1271139).\n- CVE-2026-15170: Denial of service via Z39.50 protocol dissector crash (bsc#1271140).\n- CVE-2026-15171: Denial of service via SSH protocol dissector crash (bsc#1271141).\n- CVE-2026-15172: Denial of service via FMP/NOTIFY protocol dissector crash (bsc#1271142).\n- CVE-2026-15174: Denial of Service via Catapult DCT2000 protocol dissector crash (bsc#1271144).\n","modified":"2026-08-14T18:23:58.027933986Z","published":"2026-08-05T09:20:55Z","related":["CVE-2026-15163","CVE-2026-15164","CVE-2026-15166","CVE-2026-15167","CVE-2026-15168","CVE-2026-15169","CVE-2026-15170","CVE-2026-15171","CVE-2026-15172","CVE-2026-15174","CVE-2026-6867","CVE-2026-7375","CVE-2026-7376","CVE-2026-7378","CVE-2026-7379","CVE-2026-9759"],"upstream":["CVE-2026-15163","CVE-2026-15164","CVE-2026-15166","CVE-2026-15167","CVE-2026-15168","CVE-2026-15169","CVE-2026-15170","CVE-2026-15171","CVE-2026-15172","CVE-2026-15174","CVE-2026-6867","CVE-2026-7375","CVE-2026-7376","CVE-2026-7378","CVE-2026-7379","CVE-2026-9759"],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2026/suse-su-202623124-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263727"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263758"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263759"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263760"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263761"},{"type":"REPORT","url":"https://bugzilla.suse.com/1266670"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271133"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271134"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271136"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271137"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271138"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271139"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271140"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271141"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271142"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271144"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15163"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15164"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15166"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15167"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15168"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15169"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15170"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15171"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15172"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15174"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6867"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7375"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7376"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7378"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7379"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-9759"}],"affected":[{"package":{"name":"wireshark","ecosystem":"SUSE:Linux Enterprise Server 16.0","purl":"pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20Server%2016.0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.4.17-160000.1.1"}]}],"ecosystem_specific":{"binaries":[{"wireshark-ui-qt":"4.4.17-160000.1.1","libwireshark18":"4.4.17-160000.1.1","libwiretap15":"4.4.17-160000.1.1","libwsutil16":"4.4.17-160000.1.1","wireshark":"4.4.17-160000.1.1","wireshark-devel":"4.4.17-160000.1.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:23124-1.json"}},{"package":{"name":"wireshark","ecosystem":"SUSE:Linux Enterprise Server for SAP applications 16.0","purl":"pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20applications%2016.0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.4.17-160000.1.1"}]}],"ecosystem_specific":{"binaries":[{"libwireshark18":"4.4.17-160000.1.1","libwiretap15":"4.4.17-160000.1.1","libwsutil16":"4.4.17-160000.1.1","wireshark":"4.4.17-160000.1.1","wireshark-devel":"4.4.17-160000.1.1","wireshark-ui-qt":"4.4.17-160000.1.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:23124-1.json"}}],"schema_version":"1.9.0"}