Wireshark Zlib Decompression Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in Wireshark versions 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14. The issue arises in the dissection engine, where improper handling of zlib decompression can lead to a crash.

Impact

Exploitation of this vulnerability causes a crash of the Wireshark application, leading to a denial-of-service condition.

Remediation

Users can upgrade to Wireshark versions 4.6.5 or 4.4.15 to address this vulnerability.

Added: Apr 30, 2026, 7:29 AM
Updated: Apr 30, 2026, 7:29 AM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
2.5
exploitability
4.7
remediation
7.7
relevance
7.1
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.