SUSE-SU-2026:20222-1
Dashboard / Vulnerabilities / SUSE-SU-2026:20222-1
SUSE-SU-2026:20222-1
Summary: Security update for wireshark
Details: This update for wireshark fixes the following issues: Update to Wireshark 4.4.13: - CVE-2025-11626: MONGO dissector infinite loop (bsc#1251933). - CVE-2025-13499: Kafka dissector crash (bsc#1254108). - CVE-2025-13945: HTTP3 dissector crash (bsc#1254471). - CVE-2025-13946: MEGACO dissector infinite loop (bsc#1254472). - CVE-2025-9817: SSH dissector crash (bsc#1249090). - CVE-2026-0959: IEEE 802.11 dissector crash (bsc#1256734). - CVE-2026-0961: BLF file parser crash (bsc#1256738). - CVE-2026-0962: SOME/IP-SD dissector crash (bsc#1256739). Full changelog: https://www.wireshark.org/docs/relnotes/wireshark-4.4.13.html
References: https://www.suse.com/support/update/announcement/2026/suse-su-202620222-1/, https://bugzilla.suse.com/1249090, https://bugzilla.suse.com/1251933, https://bugzilla.suse.com/1254108, https://bugzilla.suse.com/1254471, https://bugzilla.suse.com/1254472, https://bugzilla.suse.com/1256734, https://bugzilla.suse.com/1256738, https://bugzilla.suse.com/1256739, https://www.suse.com/security/cve/CVE-2025-11626, https://www.suse.com/security/cve/CVE-2025-13499, https://www.suse.com/security/cve/CVE-2025-13945, https://www.suse.com/security/cve/CVE-2025-13946, https://www.suse.com/security/cve/CVE-2025-9817, https://www.suse.com/security/cve/CVE-2026-0959, https://www.suse.com/security/cve/CVE-2026-0961, https://www.suse.com/security/cve/CVE-2026-0962
Affected packages
Package
Name: wireshark
Purl: pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20Server%2016.0
Affected ranges
Type: ECOSYSTEM
Events:
