CVE-2026-95394: Unchecked Input for Loop Condition in Wireshark
Microsoft Network Monitor file parser large loop in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Wiresharkto a version that resolves this vulnerability.Fixed in 4.6.9
Event History
Frequently Asked Questions
Which deployments are affected?
Affected versions are Wireshark 4.6.0 through 4.6.8 and 4.4.0 through 4.4.18, specifically when processing Microsoft Network Monitor files.
What would an attacker need to do to trigger the issue?
An attacker would need to persuade a user to open or process a crafted Microsoft Network Monitor file. The CVSS vector indicates local access, no privileges, high attack complexity, and user interaction are required.
What is the impact if exploitation succeeds?
The stated impact is denial of service caused by a large loop in the Microsoft Network Monitor file parser. The supplied CVSS vector indicates no confidentiality or integrity impact, with high availability impact.