SUSE-SU-2026:23124-1

Source
https://www.suse.com/support/update/announcement/2026/suse-su-202623124-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:23124-1.json
JSON Data
https://api.test.osv.dev/v1/vulns/SUSE-SU-2026:23124-1
Upstream
CVE (16)
Related
Published
2026-08-05T09:20:55Z
Modified
2026-08-14T18:23:58Z
Summary
Security update for wireshark
Details

This update for wireshark fixes the following issues:

Update to version 4.4.17.

  • CVE-2026-6867: SMB2 protocol dissector crash (bsc#1263727).
  • CVE-2026-7375: UDS protocol dissector infinite loop (bsc#1263761).
  • CVE-2026-7376: Sharkd utility crash (bsc#1263760).
  • CVE-2026-7378: Sharkd utility crash (bsc#1263759).
  • CVE-2026-7379: Sharkd utility memory leak (bsc#1263758).
  • CVE-2026-9759: ROHC protocol dissector crash (bsc#1266670).
  • CVE-2026-15163: Denial of Service via multiple protocol dissector infinite loops (bsc#1271133).
  • CVE-2026-15164: Denial of Service vulnerability in ciscodump (bsc#1271134).
  • CVE-2026-15166: Denial of Service via IEEE 802.11 protocol dissector crash (bsc#1271136).
  • CVE-2026-15167: Denial of Service via DBS Etherwatch file parser crash (bsc#1271137).
  • CVE-2026-15168: BLF file parser allows possible information disclosure (bsc#1271138).
  • CVE-2026-15169: Denial of Service via UMTS FP protocol dissector crash (bsc#1271139).
  • CVE-2026-15170: Denial of service via Z39.50 protocol dissector crash (bsc#1271140).
  • CVE-2026-15171: Denial of service via SSH protocol dissector crash (bsc#1271141).
  • CVE-2026-15172: Denial of service via FMP/NOTIFY protocol dissector crash (bsc#1271142).
  • CVE-2026-15174: Denial of Service via Catapult DCT2000 protocol dissector crash (bsc#1271144).
References

Affected packages

SUSE:Linux Enterprise Server 16.0 / wireshark

Package

Name
wireshark
Purl
pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20Server%2016.0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
4.4.17-160000.1.1

Ecosystem specific

{
    "binaries":  [
        {
            "libwireshark18":  "4.4.17-160000.1.1",
            "libwiretap15":  "4.4.17-160000.1.1",
            "libwsutil16":  "4.4.17-160000.1.1",
            "wireshark":  "4.4.17-160000.1.1",
            "wireshark-devel":  "4.4.17-160000.1.1",
            "wireshark-ui-qt":  "4.4.17-160000.1.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:23124-1.json"

SUSE:Linux Enterprise Server for SAP applications 16.0 / wireshark

Package

Name
wireshark
Purl
pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20applications%2016.0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
4.4.17-160000.1.1

Ecosystem specific

{
    "binaries":  [
        {
            "libwireshark18":  "4.4.17-160000.1.1",
            "libwiretap15":  "4.4.17-160000.1.1",
            "libwsutil16":  "4.4.17-160000.1.1",
            "wireshark":  "4.4.17-160000.1.1",
            "wireshark-devel":  "4.4.17-160000.1.1",
            "wireshark-ui-qt":  "4.4.17-160000.1.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:23124-1.json"