{"id":"SUSE-SU-2026:3501-1","summary":"Security update for wireshark","details":"This update for wireshark fixes the following issues:\n\nUpdate to version 4.6.7:\n\n- CVE-2026-5299: ICMPv6 dissector crash (bsc#1263757).\n- CVE-2026-5401: AFP dissector crash (bsc#1263756).\n- CVE-2026-5402: TLS dissector crash and possible code execution (bsc#1263755).\n- CVE-2026-5403: SBC audio codec crash (bsc#1263765).\n- CVE-2026-5404: K12 RF5 file parser crash (bsc#1263766).\n- CVE-2026-5405: RDP dissector crash (bsc#1263767).\n- CVE-2026-5406: FC-SWILS dissector crash (bsc#1263754).\n- CVE-2026-5407: SMB2 dissector infinite loop (bsc#1263753).\n- CVE-2026-5408: BT-DHT dissector crash (bsc#1263752).\n- CVE-2026-5409: Monero dissector crash (bsc#1263751).\n- CVE-2026-5653: DCP-ETSI dissector crash (bsc#1263750).\n- CVE-2026-5654: AMR-NB audio codec crash (bsc#1263749).\n- CVE-2026-5655: SDP dissector crash (bsc#1263748).\n- CVE-2026-5656: Profile import crash and possible code execution (bsc#1263809).\n- CVE-2026-5657: iLBC audio codec crash (bsc#1263747).\n- CVE-2026-6519: MBIM protocol dissector infinite loop (bsc#1263746).\n- CVE-2026-6520: OpenFlow v6 protocol dissector infinite loop (bsc#1263745).\n- CVE-2026-6521: OpenFlow v5 protocol dissector infinite loops (bsc#1263744).\n- CVE-2026-6522: RPKI-Router protocol dissector infinite loop (bsc#1263743).\n- CVE-2026-6523: GNW protocol dissector infinite loop (bsc#1263742).\n- CVE-2026-6524: MySQL protocol dissector crash (bsc#1263741).\n- CVE-2026-6525: IEEE 802.11 protocol dissector crash (bsc#1263810).\n- CVE-2026-6526: RTSP protocol dissector crash (bsc#1263740).\n- CVE-2026-6527: ASN.1 PER dissector crash (bsc#1263739).\n- CVE-2026-6528: TLS protocol dissector infinite loop (bsc#1263738).\n- CVE-2026-6529: iLBC audio codec crash (bsc#1263737).\n- CVE-2026-6530: DCP-ETSI protocol dissector crash (bsc#1263736).\n- CVE-2026-6531: SANE protocol dissector infinite loop (bsc#1263735).\n- CVE-2026-6532: Kismet protocol dissector crash (bsc#1263734).\n- CVE-2026-6533: Dissection engine LZ77 decompression crash (bsc#1263733).\n- CVE-2026-6534: USB HID dissector infinite loop (bsc#1263732).\n- CVE-2026-6535: Dissection engine zlib decompression crash (bsc#1263731).\n- CVE-2026-6536: DLMS/COSEM dissector infinite loop (bsc#1263730).\n- CVE-2026-6537: ZigBee dissector crash (bsc#1263729).\n- CVE-2026-6538: BEEP dissector crash (bsc#1263728).\n- CVE-2026-6867: SMB2 protocol dissector crash (bsc#1263727).\n- CVE-2026-6868: HTTP protocol dissector crash (bsc#1263762).\n- CVE-2026-6869: WebSocket protocol dissector crash (bsc#1263726).\n- CVE-2026-6870: GSM RP protocol dissector crash (bsc#1263725).\n- CVE-2026-7375: UDS protocol dissector infinite loop (bsc#1263761).\n- CVE-2026-7376: Sharkd utility crash (bsc#1263760).\n- CVE-2026-7378: Sharkd utility crash (bsc#1263759).\n- CVE-2026-7379: Sharkd utility memory leak (bsc#1263758).\n- CVE-2026-9759: ROHC protocol dissector crash (bsc#1266670).\n- CVE-2026-15163: Denial of Service via multiple protocol dissector infinite loops (bsc#1271133).\n- CVE-2026-15164: Denial of Service vulnerability in ciscodump (bsc#1271134).\n- CVE-2026-15165: Denial of Service via TLS ECH decryptor crash (bsc#1271135).\n- CVE-2026-15166: Denial of Service via IEEE 802.11 protocol dissector crash (bsc#1271136).\n- CVE-2026-15167: Denial of Service via DBS Etherwatch file parser crash (bsc#1271137).\n- CVE-2026-15168: BLF file parser allows possible information disclosure (bsc#1271138).\n- CVE-2026-15169: Denial of Service via UMTS FP protocol dissector crash (bsc#1271139).\n- CVE-2026-15170: Denial of service via Z39.50 protocol dissector crash (bsc#1271140).\n- CVE-2026-15171: Denial of service via SSH protocol dissector crash (bsc#1271141).\n- CVE-2026-15172: Denial of service via FMP/NOTIFY protocol dissector crash (bsc#1271142).\n- CVE-2026-15173: Denial of Service via pcapng file parser crash (bsc#1271143).\n- CVE-2026-15174: Denial of Service via Catapult DCT2000 protocol dissector crash (bsc#1271144).\n","modified":"2026-08-06T11:15:04.335267445Z","published":"2026-08-05T12:41:59Z","related":["CVE-2026-15163","CVE-2026-15164","CVE-2026-15165","CVE-2026-15166","CVE-2026-15167","CVE-2026-15168","CVE-2026-15169","CVE-2026-15170","CVE-2026-15171","CVE-2026-15172","CVE-2026-15173","CVE-2026-15174","CVE-2026-5299","CVE-2026-5401","CVE-2026-5402","CVE-2026-5403","CVE-2026-5404","CVE-2026-5405","CVE-2026-5406","CVE-2026-5407","CVE-2026-5408","CVE-2026-5409","CVE-2026-5653","CVE-2026-5654","CVE-2026-5655","CVE-2026-5656","CVE-2026-5657","CVE-2026-6519","CVE-2026-6520","CVE-2026-6521","CVE-2026-6522","CVE-2026-6523","CVE-2026-6524","CVE-2026-6525","CVE-2026-6526","CVE-2026-6527","CVE-2026-6528","CVE-2026-6529","CVE-2026-6530","CVE-2026-6531","CVE-2026-6532","CVE-2026-6533","CVE-2026-6534","CVE-2026-6535","CVE-2026-6536","CVE-2026-6537","CVE-2026-6538","CVE-2026-6867","CVE-2026-6868","CVE-2026-6869","CVE-2026-6870","CVE-2026-7375","CVE-2026-7376","CVE-2026-7378","CVE-2026-7379","CVE-2026-9759"],"upstream":["CVE-2026-15163","CVE-2026-15164","CVE-2026-15165","CVE-2026-15166","CVE-2026-15167","CVE-2026-15168","CVE-2026-15169","CVE-2026-15170","CVE-2026-15171","CVE-2026-15172","CVE-2026-15173","CVE-2026-15174","CVE-2026-5299","CVE-2026-5401","CVE-2026-5402","CVE-2026-5403","CVE-2026-5404","CVE-2026-5405","CVE-2026-5406","CVE-2026-5407","CVE-2026-5408","CVE-2026-5409","CVE-2026-5653","CVE-2026-5654","CVE-2026-5655","CVE-2026-5656","CVE-2026-5657","CVE-2026-6519","CVE-2026-6520","CVE-2026-6521","CVE-2026-6522","CVE-2026-6523","CVE-2026-6524","CVE-2026-6525","CVE-2026-6526","CVE-2026-6527","CVE-2026-6528","CVE-2026-6529","CVE-2026-6530","CVE-2026-6531","CVE-2026-6532","CVE-2026-6533","CVE-2026-6534","CVE-2026-6535","CVE-2026-6536","CVE-2026-6537","CVE-2026-6538","CVE-2026-6867","CVE-2026-6868","CVE-2026-6869","CVE-2026-6870","CVE-2026-7375","CVE-2026-7376","CVE-2026-7378","CVE-2026-7379","CVE-2026-9759"],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2026/suse-su-20263501-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263725"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263726"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263727"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263728"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263729"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263730"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263731"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263732"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263733"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263734"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263735"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263736"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263737"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263738"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263739"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263740"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263741"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263742"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263743"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263744"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263745"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263746"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263747"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263748"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263749"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263750"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263751"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263752"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263753"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263754"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263755"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263756"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263757"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263758"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263759"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263760"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263761"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263762"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263765"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263766"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263767"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263809"},{"type":"REPORT","url":"https://bugzilla.suse.com/1263810"},{"type":"REPORT","url":"https://bugzilla.suse.com/1266670"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271133"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271134"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271135"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271136"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271137"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271138"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271139"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271140"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271141"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271142"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271143"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271144"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15163"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15164"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15165"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15166"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15167"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15168"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15169"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15170"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15171"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15172"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15173"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15174"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5299"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5401"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5402"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5403"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5404"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5405"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5406"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5407"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5408"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5409"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5653"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5654"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5655"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5656"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5657"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6519"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6520"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6521"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6522"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6523"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6524"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6525"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6526"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6527"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6528"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6529"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6530"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6531"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6532"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6533"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6534"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6535"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6536"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6537"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6538"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6867"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6868"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6869"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6870"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7375"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7376"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7378"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-7379"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-9759"}],"affected":[{"package":{"name":"wireshark","ecosystem":"SUSE:Linux Enterprise Module for Basesystem 15 SP7","purl":"pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.6.7-150700.21.11.1"}]}],"ecosystem_specific":{"binaries":[{"libwireshark19":"4.6.7-150700.21.11.1","libwiretap16":"4.6.7-150700.21.11.1","libwsutil17":"4.6.7-150700.21.11.1","wireshark":"4.6.7-150700.21.11.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:3501-1.json"}},{"package":{"name":"wireshark","ecosystem":"SUSE:Linux Enterprise Module for Desktop Applications 15 SP7","purl":"pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.6.7-150700.21.11.1"}]}],"ecosystem_specific":{"binaries":[{"wireshark-devel":"4.6.7-150700.21.11.1","wireshark-ui-qt":"4.6.7-150700.21.11.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:3501-1.json"}}],"schema_version":"1.8.0"}