CVE-2026-95387

Summary

SPDY protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service

Affected Software

VendorProductVersion RangeStatus
Wireshark FoundationWireshark4.6.0 < 4.6.9affected
Wireshark FoundationWireshark4.4.0 < 4.4.19affected

Weaknesses

  • CWE-122: CWE-122: Heap-based Buffer Overflow

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: poc
    • Automatable: no
    • Technical Impact: total

Additional References

References