Medium severity4.7OSV Advisory· Published Jan 14, 2026· Updated Jun 17, 2026
CVE-2026-0960
CVE-2026-0960
Description
HTTP3 protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.2 allows denial of service
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9- osv-coords6 versionspkg:rpm/opensuse/wireshark&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/wireshark&distro=openSUSE%20Tumbleweedpkg:rpm/suse/libvirt&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP7pkg:rpm/suse/libvirt&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Server%20Applications%2015%20SP7pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP7pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP7
< 4.2.14-150600.18.35.1+ 5 more
- (no CPE)range: < 4.2.14-150600.18.35.1
- (no CPE)range: < 4.6.3-1.1
- (no CPE)range: < 11.0.0-150700.4.19.1
- (no CPE)range: < 11.0.0-150700.4.19.1
- (no CPE)range: < 4.2.14-150600.18.35.1
- (no CPE)range: < 4.2.14-150600.18.35.1
Patches
Vulnerability mechanics
References
2- gitlab.com/wireshark/wireshark/-/issues/20944nvdExploitIssue TrackingPatchVendor Advisory
- www.wireshark.org/security/wnpa-sec-2026-04.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.