CVE-2026-96423: 
Wireshark Analyse et atténuation des vulnérabilités

Aperçu

CVE-2026-96423 is a vulnerability described as a crash in the X11 protocol dissector within Wireshark. The CVE identifier is currently in Reserved status and full details have not yet been publicly published. Based on available Feedly intelligence, the vulnerability appears to affect Wireshark versions addressed in the 4.6.9 and 4.4.19 release cycles. No CVSS score has been assigned at this time (Feedly, Wireshark 4.6.9 Release Notes).

Détails techniques

The vulnerability resides in Wireshark's X11 protocol dissector, where a flaw causes the application to crash when processing certain network traffic. This class of issue is typically associated with improper input validation or out-of-bounds memory access (CWE-125 or CWE-476) during packet dissection. Because Wireshark can be configured to capture live traffic or open capture files, the attack surface includes both network-based and file-based vectors. Full technical details, including the precise root cause and any proof-of-concept code, have not been publicly disclosed as the CVE remains in Reserved status (Feedly, Wireshark 4.6.9 Release Notes).

Impact

Successful exploitation of this vulnerability would cause Wireshark to crash, resulting in a denial of service for the affected user or analyst. Since Wireshark operates as a network analysis tool rather than a network service, the primary impact is availability — an attacker could craft malicious X11 protocol traffic or a malicious capture file to repeatedly crash the application. There is no current evidence suggesting this vulnerability leads to remote code execution or data exfiltration (Feedly).

Exploitabilité

There is no known public proof-of-concept exploit, no evidence of in-the-wild exploitation, and no threat actor attribution associated with CVE-2026-96423 at this time. The CVE remains in Reserved status, meaning exploitation details are not yet publicly available. No EPSS score has been assigned, and the vulnerability does not appear in the CISA Known Exploited Vulnerabilities (KEV) catalog (Feedly).

Atténuation et solutions de contournement

Users should upgrade to Wireshark 4.6.9 or 4.4.19, which are the patched releases identified in Feedly intelligence as addressing this vulnerability. Until an upgrade is possible, analysts should avoid opening untrusted packet capture files and exercise caution when capturing live traffic from untrusted networks. Restricting Wireshark usage to trusted environments and capture files is a prudent interim measure (Wireshark 4.6.9 Release Notes, Wireshark 4.4.19 Release Notes).

Réactions de la communauté

A brief mention of Wireshark 4.6.9 fixing 19 vulnerabilities (including this one) appeared on a cybersecurity news aggregator, but no significant vendor statements, notable researcher commentary, or broad community discussion specific to CVE-2026-96423 has been observed at this time (CyberUpdates365).

Ressources additionnelles

État de correction de la distribution Linux

Disponibilité des correctifs sur les principales distributions Linux et leurs versions.

Debian

Affecté

bookworm

wireshark

Affecté

sid

wireshark

Affecté

trixie

wireshark

Affecté

Ubuntu

Inconnu

bionic (esm-apps)

wireshark

Inconnu

devel

wireshark

Inconnu

focal (esm-apps)

wireshark

Inconnu

jammy

wireshark

Inconnu

jammy (esm-apps)

wireshark

Inconnu

noble

wireshark

Inconnu

noble (esm-apps)

wireshark

Inconnu

resolute

wireshark

Inconnu

RHEL / CentOS

Affecté

RHEL 8

Non affecté

RHEL 9

Non affecté

RHEL 10

wireshark.src

Affecté

Source: Ce rapport a été généré à l’aide de l’IA

Apparenté Wireshark Vulnérabilités:

Identifiant CVE

Sévérité

Score

Technologies

Nom du composant

Exploit CISA KEV

A corrigé

Date de publication

CVE-2026-96423MEDIUM5.5
  • Wireshark logoWireshark
  • wireshark.src
NonNonSep 29, 2026
CVE-2026-96422MEDIUM5.5
  • Wireshark logoWireshark
  • wireshark
NonNonSep 29, 2026
CVE-2026-96421MEDIUM5.5
  • Wireshark logoWireshark
  • wireshark-cli
NonNonSep 29, 2026
CVE-2026-96419MEDIUM5.5
  • Wireshark logoWireshark
  • wireshark
NonNonSep 29, 2026
CVE-2026-96420MEDIUM4.7
  • Wireshark logoWireshark
  • wireshark.src
NonNonSep 29, 2026

Évaluation gratuite des vulnérabilités

Évaluez votre posture de sécurité dans le cloud

Évaluez vos pratiques de sécurité cloud dans 9 domaines de sécurité pour évaluer votre niveau de risque et identifier les failles dans vos défenses.

Demander une évaluation

Obtenez une démo personnalisée

Prêt(e) à voir Wiz en action ?

"La meilleure expérience utilisateur que j’ai jamais vue, offre une visibilité totale sur les workloads cloud."
David EstlickRSSI
"Wiz fournit une interface unique pour voir ce qui se passe dans nos environnements cloud."
Adam FletcherChef du service de sécurité
"Nous savons que si Wiz identifie quelque chose comme critique, c’est qu’il l’est réellement."
Greg PoniatowskiResponsable de la gestion des menaces et des vulnérabilités