SharkFest US 2026 is coming to Nashville, Tennessee! Learn more and register.

wnpa-sec-2026-51 · ROHC protocol dissector crash

Summary

Name: ROHC protocol dissector crash

Docid: wnpa-sec-2026-51

Date: May 19, 2026

Affected versions: 4.6.0 to 4.6.5, 4.4.0 to 4.4.15

Fixed versions: 4.6.6, 4.4.16

References:

Wireshark issue 21243.

Details

Description

The ROHC protocol dissector could crash.

Impact

Discovered by Arjun Basnet @ Securin Labs. We are unaware of any exploits for this issue. It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file.

Resolution

Upgrade to Wireshark 4.6.6, 4.4.16 or later.