Wireshark 4.6.8 Addresses 28 Security Bugs, Including Critical File Parser Vulnerabilities

Wireshark 4.6.8 Addresses 28 Security Bugs, Including Critical File Parser Vulnerabilities

First seen 13 Aug 2026, 10:15 UTC Feeds2.FeedburnerFeeds.4Sysops 83% similarity 57.8

Article Content

Browse articles
ThreatCluster

Wireshark 4.6.8 has been released, fixing 28 security bugs, with nine vulnerabilities in file parsers that can lead to crashes when opening crafted capture files. These vulnerabilities do not require network access, posing a significant risk to users. The release also addresses memory-safety flaws, two crashes in `sharkd`, and issues with 5G field decoding. Affected file parsers include pcapng, Endace ERF, and several others, particularly on Windows systems. Users are advised to update to the latest version to mitigate these risks. The vulnerabilities could potentially be exploited by attackers to disrupt operations without direct network access. The update is critical for maintaining the integrity and reliability of the protocol analyzer. Current status is that the patch is available and users are encouraged to apply it promptly.

Key Points: • Wireshark 4.6.8 fixes 28 security bugs, including nine in file parsers that can crash the tool. • The vulnerabilities allow crashes from crafted capture files, posing risks without network access. • Users are urged to update to version 4.6.8 to mitigate potential exploitation.

ThreatCluster AI How this analysis works

Timeline

2026-08-13
Wireshark 4.6.8 released
The latest version addresses 28 security bugs, including critical vulnerabilities in file parsers.
Feeds2.Feedburner
2026-08-13
Critical vulnerabilities identified
Nine vulnerabilities in file parsers can cause crashes when opening crafted capture files, affecting users on various systems.
Feeds.4Sysops

Community

Browse all →