CVE-2026-19695: Stack-based Buffer Overflow in Wireshark
Gammu DCT3 trace file parser crash in 4.6.0 to 4.6.7 allows denial of service
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Gammuto a version that resolves this vulnerability.Fixed in 4.6.8 - Compensating control
Mitigate the denial of service from the Gammu DCT3 trace file parser crash (v4.6.0 to v4.6.7) by limiting or disabling processing of DCT3 trace files until upgraded to 4.6.8 or above.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-19695?
The severity of CVE-2026-19695 is medium with a score of 4.7.
What is CVE-2026-19695?
CVE-2026-19695 is a stack-based buffer overflow vulnerability in the Gammu DCT3 trace file parser in Wireshark, allowing a denial of service.
How do I fix CVE-2026-19695?
To fix CVE-2026-19695, update to a patched version of Wireshark that addresses the buffer overflow vulnerability.
Which versions of Wireshark are affected by CVE-2026-19695?
Versions 4.6.0 to 4.6.7 of Wireshark are affected by CVE-2026-19695.
What can exploit CVE-2026-19695?
CVE-2026-19695 can be exploited by specially crafted Gammu DCT3 trace files that can cause Wireshark to crash.