CVE tracker
312 subscribers
4.42K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2026-6523 - Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark

CVE ID :CVE-2026-6523
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :GNW protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6524 - Access of Uninitialized Pointer in Wireshark

CVE ID :CVE-2026-6524
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :MySQL protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6526 - NULL Pointer Dereference in Wireshark

CVE ID :CVE-2026-6526
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :RTSP protocol dissector crash in Wireshark 4.6.0 to 4.6.4
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6527 - Uncontrolled Recursion in Wireshark

CVE ID :CVE-2026-6527
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :ASN.1 PER protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6528 - Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark

CVE ID :CVE-2026-6528
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :TLS protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6529 - Heap-based Buffer Overflow in Wireshark

CVE ID :CVE-2026-6529
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :iLBC audio codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6530 - Heap-based Buffer Overflow in Wireshark

CVE ID :CVE-2026-6530
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :DCP-ETSI protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6531 - Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark

CVE ID :CVE-2026-6531
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :SANE protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6532 - Buffer Over-read in Wireshark

CVE ID :CVE-2026-6532
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :Kismet protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6533 - Improperly Controlled Sequential Memory Allocation in Wireshark

CVE ID :CVE-2026-6533
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :Dissection engine LZ77 decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6534 - Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark

CVE ID :CVE-2026-6534
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :USB HID protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6535 - Improperly Controlled Sequential Memory Allocation in Wireshark

CVE ID :CVE-2026-6535
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :Dissection engine zlib decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6536 - Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark

CVE ID :CVE-2026-6536
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :DLMS/COSEM protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6537 - Stack-based Buffer Overflow in Wireshark

CVE ID :CVE-2026-6537
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :ZigBee protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6538 - Stack-based Buffer Overflow in Wireshark

CVE ID :CVE-2026-6538
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :BEEP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6867 - Improperly Controlled Sequential Memory Allocation in Wireshark

CVE ID :CVE-2026-6867
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :SMB2 protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6869 - Improperly Controlled Sequential Memory Allocation in Wireshark

CVE ID :CVE-2026-6869
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :WebSocket protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-6870 - Access of Uninitialized Pointer in Wireshark

CVE ID :CVE-2026-6870
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :GSM RP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-7270 - Local privilege escalation via execve()

CVE ID :CVE-2026-7270
Published : April 30, 2026, 7:16 a.m. | 28 minutes ago
Description :An operator precedence bug in the kernel results in a scenario where a buffer overflow causes attacker-controlled data to overwrite adjacent execve(2) argument buffers. The bug may be exploitable by an unprivileged user to obtain superuser privileges.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-7164 - pf can overflow the stack parsing crafted SCTP packets

CVE ID :CVE-2026-7164
Published : April 30, 2026, 8:16 a.m. | 3 hours, 33 minutes ago
Description :Incorrect packet validation allowed unbounded recursion parsing SCTP chunk parameters. This can eventually result in a stack overflow and panic. Remote attackers can craft packets which cause affected systems to panic. This affects any system where pf is configured to process traffic, independent of the configured ruleset.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-22070 - ColorOS Assistant Path Traversal Vulnerability

CVE ID :CVE-2026-22070
Published : April 30, 2026, 9:16 a.m. | 2 hours, 33 minutes ago
Description :ColorOS Assistant has an unauthenticated start-download channel, leading to file path traversal.
Severity: 7.1 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...