NIXPKGS-2026-1299
GitHub issue
published on
Permalink
CVE-2026-5402
8.8 HIGH
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): NONE
- User interaction (UI): REQUIRED
- Scope (S): UNCHANGED
- Confidentiality impact (C): HIGH
- Integrity impact (I): HIGH
- Availability impact (A): HIGH
by @LeSuisse Activity log
- Created suggestion
- @LeSuisse accepted
-
@LeSuisse
ignored
maintainer.ignore
2 maintainers
- @fpletz
- @bjornfor
- @LeSuisse published on GitHub
Heap-based Buffer Overflow in Wireshark
TLS protocol dissector heap overflow in Wireshark 4.6.0 to 4.6.4 allows denial of service and possible code execution
References
Affected products
Wireshark
- <4.6.5
Matching in nixpkgs
pkgs.tshark
Powerful network protocol analyzer
pkgs.wireshark
Powerful network protocol analyzer
pkgs.wireshark-qt
Powerful network protocol analyzer
Package maintainers
Ignored maintainers (2)
-
@fpletz Franz Pletz <fpletz@fnordicwalking.de>
-
@bjornfor Bjørn Forsman <bjorn.forsman@gmail.com>