CVE-2026-6868Disclosure(wireshark / wireshark)

LOWCVSS 7.5 · HIGH

Signal is active with 4 mentions in latest observed window

Immediate actions

  • Patch wireshark wireshark systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

HTTP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-121

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • wireshark

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • 4 total mentions across 1 day

Affected systems

Vendors
Products
wireshark

Deep dive

Activity timeline4 mentions / 1d
01234Mentions · 2026-04-30: 4Patch / Workaround · 2026-04-30: 1Technical Details · 2026-04-30: 404-30
Signal classification2 categories
Disclosure
375.0%
Patch
125.0%
Referenced assets4 URLs
Full discourse4 posts
  • Upwind Security MDR@UpwindMDR
    Patch

    🚨 CVE-2026-6868 - Wireshark DoS HTTP dissector crash → denial of service Affects: 4.6.0–4.6.4, 4.4.0–4.4.14 ⚠️ Malformed traffic can crash analysis sessions Patch ASAP

    Post summary

    A notification of a denial‑of‑service vulnerability in Wireshark’s HTTP dissector, affecting certain versions, and urging users to apply a patch immediately.

    0004079
    237 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-6868 HTTP Protocol Dissector Denial of Service in Wireshark 4.6.0-4.6.4... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-6868 Customizable Vulnerability Alerts: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=4

    Post summary

    The post announces CVE‑2026‑6868, a DOS flaw in Wireshark’s HTTP dissector, and links to a vulnerability details page, but offers no PoC, exploit, patch, or active exploitation evidence.

    0000137
    4.0K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-6868 HTTP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service https://www.cve.org/CVERecord?id=CVE-2026-6868 ----- Traducción: CVE-2026-6868: fallo del analizador de protocolo HTTP en Wireshark 4.6.0 a 4.6.4 y 4.… http://infoflow.cloud`

    Post summary

    A denial‑of‑service vulnerability (CVE‑2026‑6868) affecting the Wireshark HTTP dissector in versions 4.6.x and 4.4.x has been disclosed.

    0000023
    74 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-6868 HTTP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service https://www.cve.org/CVERecord?id=CVE-2026-6868

    Post summary

    CVE‑2026‑6868 describes a denial‑of‑service crash in Wireshark’s HTTP dissector affecting specific versions, with no evidence of exploits, patches, or active attacks.

    00000154
    57.3K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appwiresharkwireshark---

Explore more