CVE-2026-15164: Heap-based Buffer Overflow in ciscodump
Published Jul 8, 2026
·Updated
Crash in ciscodump 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Affected Software
3 affected components
ciscodump>=4.6.0<=4.6.6, >=4.4.0<=4.4.16
Wireshark Wireshark>=4.4.0<4.4.17
Wireshark Wireshark>=4.6.0<4.6.7
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
ciscodumpto a version that resolves this vulnerability.Fixed in 4.6.7
Event History
Jul 8, 2026
CVE Published
via MITRE·08:50 PM
Data Sourced
via MITRE·08:50 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:16 PM
DescriptionSeverityWeaknessAffected Software
Dec 21, 58490
Event
via NVD·07:10 AM
Frequently Asked Questions
1
What is the severity of CVE-2026-15164?
CVE-2026-15164 has a high severity rating of 7.5.
2
How does CVE-2026-15164 affect ciscodump?
CVE-2026-15164 causes a heap-based buffer overflow that can lead to a denial of service in ciscodump versions 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16.
3
What versions of ciscodump are impacted by CVE-2026-15164?
CVE-2026-15164 affects ciscodump versions 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16.
4
How do I fix CVE-2026-15164?
To fix CVE-2026-15164, you should upgrade to the latest version of ciscodump that is not affected by this vulnerability.
5
What is the risk associated with CVE-2026-15164?
CVE-2026-15164 has a risk score of 43, indicating a significant risk of service disruption.