[CLSA-2026:1785491682] wireshark: Fix of 28 CVEs
Type:
security
Severity:
Important
Release date:
2026-07-31 09:55:15 UTC
Description:
- CVE-2026-15172: do not precompute the FMP/NOTIFY handle list length to avoid an integer overflow - CVE-2026-15174: cap E-DCH DDI entries at MAX_EDCH_DDIS in the Catapult DCT2000 dissector - CVE-2026-5407: check for offset overflow in SMB2 EA info and notify data dissection - CVE-2026-6534: skip USB HID items with a report size of zero to prevent an infinite loop - CVE-2026-6533: sanity check the LZ77 uncompression size - CVE-2026-6522: check for offset overflow on unknown RPKI-RTR PDU types to prevent an infinite loop - CVE-2026-5404: fix a stack buffer overflow when writing K12 source descriptor records - CVE-2026-6529: report the proper iLBC decoded length for multi-frame payloads - CVE-2026-6530: require equal-size fragments for DCP ETSI Reed-Solomon reassembly - CVE-2026-6870: stop using a global tree pointer in the GSM RP dissector - CVE-2026-6869: bound WebSocket permessage-deflate decompression buffer growth - CVE-2026-6521: prevent infinite loops in OpenFlow v5 action and table description dissection - CVE-2026-6526: check the strstr() result when resolving HTTP Location targets to avoid a crash - CVE-2026-6532: fix a heap buffer overflow in the Kismet dissector - CVE-2026-15163: advance dissection offsets in the MIH, MPEG DSM-CC, eDonkey and MEGACO dissectors to prevent infinite loops
Updated packages:
  • wireshark-3.4.10-7.el9_6.tuxcare.els7.x86_64.rpm
    sha:11be231f04c29b2c8a3b8bb1b532b5b0a1b6907375d6602e85816764b5b1d9c2
  • wireshark-cli-3.4.10-7.el9_6.tuxcare.els7.i686.rpm
    sha:d5c48b0a4f18e6c57abeca90e21c5764e748e810d64209ff857cdbf896485479
  • wireshark-cli-3.4.10-7.el9_6.tuxcare.els7.x86_64.rpm
    sha:b5a5bb7d8772bb6fc27053856bfd0de0212b4943b44b91c150646fb6b9ee7e85
  • wireshark-devel-3.4.10-7.el9_6.tuxcare.els7.i686.rpm
    sha:b51c37cedc7669874d2db1b8a8191995bb1c349306f0e15c1b534a1e2af30bea
  • wireshark-devel-3.4.10-7.el9_6.tuxcare.els7.x86_64.rpm
    sha:ea0a36053b792e59841586807d1bc4d4e35b8d2d34294254629607be0baba897
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.