Wireshark iLBC Codec Double-Free Vulnerability Leading to Denial-of-Service

Vulnerability

A denial-of-service vulnerability has been identified in Wireshark versions 4.6.0 through 4.6.4 and 4.4.0 through 4.4.14. The issue arises from a double-free error in the iLBC audio codec, where the codec's release function improperly frees memory that has already been released, leading to a crash when Wireshark is closed. This vulnerability can be triggered by playing an iLBC RTP stream and then closing the application.

Impact

Exploitation of this vulnerability causes Wireshark to crash.

Reproduction

The vulnerability can be reproduced by loading a packet capture file containing a malformed iLBC RTP stream into Wireshark. After playing the stream through the Telephony -> VoIP Calls menu, closing Wireshark will result in a crash.

Remediation

Users are advised to upgrade to Wireshark versions 4.6.5, 4.4.15 or later.

Added: Apr 30, 2026, 8:00 AM
Updated: Apr 30, 2026, 8:00 AM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.6
exploitability
5.6
remediation
7.7
relevance
7.1
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.