openSUSE-SU-2026:22014-1

See a problem?
Import Source
https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:22014-1.json
JSON Data
https://api.osv.dev/v1/vulns/openSUSE-SU-2026:22014-1
Upstream
CVE (28)
Related
Published
2026-10-02T17:37:57Z
Modified
2026-10-03T17:00:03Z
Summary
Security update for wireshark
Details

This update for wireshark fixes the following issues:

Update to Wireshark 4.4.18:

  • CVE-2026-19694: TTX Logger file parser crash (bsc#1275279).
  • CVE-2026-19695: Gammu DCT3 trace file parser crash (bsc#1275280).
  • CVE-2026-19696: Ixia IxVeriWave and Vector Informatik BLF file parser crashes on Windows (bsc#1275281).
  • CVE-2026-76879: C12.22 protocol dissector crash (bsc#1275828).
  • CVE-2026-76880: RRC protocol dissector crash (bsc#1275829).
  • CVE-2026-76881: CMS protocol dissector crash (bsc#1275831).
  • CVE-2026-76882: Bluetooth Attribute Protocol dissector crash (bsc#1275832).
  • CVE-2026-76883: Catapult DCT2000 file parser crash (bsc#1275833).
  • CVE-2026-76884: ERF file parser crash (bsc#1275834).
  • CVE-2026-76885: Tektronix K12xx file parser crash (bsc#1275835).
  • CVE-2026-76886: C12.22 protocol dissector crash (bsc#1275836).
  • CVE-2026-76887: Dissection engine reassembly crash (bsc#1275838).
  • CVE-2026-76888: RDP protocol dissector crash (bsc#1275839).
  • CVE-2026-76889: UMTS FP protocol dissector crash (bsc#1275840).
  • CVE-2026-76890: Sharkd utility crash (bsc#1275841).
  • CVE-2026-76891: Sharkd utility crash (bsc#1275844).
  • CVE-2026-76917: Bluetooth AVRCP Profile (bsc#1275842).
  • CVE-2026-76918: SSH protocol dissector crash (bsc#1275843).
  • CVE-2026-76919: ESS protocol dissector crash (bsc#1275845).
  • CVE-2026-76920: 3gpp phone log file parser crash (bsc#1275846).
  • CVE-2026-76921: CMS protocol dissector crash (bsc#1275847).
  • CVE-2026-76922: Bluetooth BR/EDR FHS protocol dissector crash (bsc#1275848).
  • CVE-2026-76923: Bluetooth HFP Profile protocol dissector crash (bsc#1275849).
  • CVE-2026-76924: Kerberos protocol dissector crash (bsc#1275850).
  • CVE-2026-76926: BUSMASTER file parser abnormal exit (bsc#1275851).
  • CVE-2026-76927: H.245 protocol dissector crash (bsc#1275852).
  • CVE-2026-76928: X.509IF protocol dissector crash (bsc#1275853).
  • CVE-2026-76929: Pcapng file parser crash (bsc#1275854).

Many more features, bug fixes and updated protocol support as listed in: https://www.wireshark.org/docs/relnotes/wireshark-4.4.18.html

References

Affected packages

openSUSE:Leap 16.0 / wireshark

Package

Name
wireshark
Purl
pkg:rpm/opensuse/wireshark&distro=openSUSE%20Leap%2016.0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
4.4.18-160000.1.1

Ecosystem specific

{
    "binaries":  [
        {
            "libwireshark18":  "4.4.18-160000.1.1",
            "libwiretap15":  "4.4.18-160000.1.1",
            "libwsutil16":  "4.4.18-160000.1.1",
            "wireshark":  "4.4.18-160000.1.1",
            "wireshark-devel":  "4.4.18-160000.1.1",
            "wireshark-ui-qt":  "4.4.18-160000.1.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:22014-1.json"