The following vulnerabilities have been fixed:
wnpa-sec-2026-52 Catapult DCT2000 protocol dissector crash. Issue 21270.
wnpa-sec-2026-54 FMP/NOTIFY protocol dissector large loop. Issue 21347.
wnpa-sec-2026-55 SSH protocol dissector crash. Issue 21378.
wnpa-sec-2026-57 IEEE 802.11 protocol dissector crash. Issue 21391.
wnpa-sec-2026-58 Z39.50 protocol dissector crash. Issue 21397.
wnpa-sec-2026-59 UMTS FP protocol dissector crash. Issue 21398.
wnpa-sec-2026-60 BLF file parser information disclosure. Issue 21361.
wnpa-sec-2026-61 Multiple protocol dissector infinite loops. Issue 21275, Issue 21277, Issue 21330, Issue 21383.
wnpa-sec-2026-62 DBS Etherwatch file parser crash. Issue 21352.
wnpa-sec-2026-63 Ciscodump extcap crash. Issue 21375.
The following bugs have been fixed:
Build failure with Qt 6.11 beta. Issue 20965.
BACapp: Error parsing you-are request. Issue 21260.
Fuzz job issue: fuzz-2026-05-24-14517548985.pcap. Issue 21272.
Fuzz job UTF-8 encoding issue: fuzz-2026-06-07-14732586286.pcap. Issue 21331.
Memory leak in alp-sample1.pcap. Issue 21343.
Heap-Buffer-Overflow in Wireshark Logcat Parser. Issue 21346.
HEVC (H.265) dissector: bit_offset not advanced after sub_layer_hrd_parameters() causes false Malformed Packet. Issue 21362.
dfilter_compile_full: heap-buffer-overflow READ in ws_strptime on a time literal. Issue 21376.
Wireshark crashes with a HEAP_CORRUPTION error when using the last saved recent_common file. Issue 21379.
Fuzz job issue: fuzz-2026-06-30-15106674620.pcap. Issue 21381.
The Windows installers now ship with Qt 6.7.3. They previously shipped with Qt 6.5.3.
The Windows installers are now built with Visual Studio 2026.
There are no new protocols in this release.
ALC, BACapp, Catapult DCT2000, COTP, CSN.1, DNS, eDonkey, FC ELS, FMP/NOTIFY, H.265, IEEE 802.11, LLS, MEGACO, MIH, MPEG DSM-CC, RELOAD, SSH, UMTS FP, WOWW, and Z39.50
Android Logcat, BLF, and DBS Etherwatch
There is no updated file format support in this release.