PT-2025-48797 · Wireshark Foundation+2 · Wireshark+2

Published

2025-12-03

·

Updated

2026-04-02

·

CVE-2025-13946

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Wireshark versions 4.4.0 through 4.4.11 Wireshark versions 4.6.0 through 4.6.1
Description The MEGACO dissector in Wireshark contains an infinite loop that can lead to a denial of service. The issue is triggered by the improper handling of MEGACO protocol data.
Recommendations Wireshark versions 4.4.0 through 4.4.11 should be updated to a later version. Wireshark versions 4.6.0 through 4.6.1 should be updated to a later version.

Exploit

Fix

DoS

Infinite Loop

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-71213
BDU:2026-03609
CVE-2025-13946
OESA-2026-1058
OESA-2026-1059
OESA-2026-1060
OESA-2026-1061
OESA-2026-1062
OESA-2026-1546
OPENSUSE-SU-2025:15799-1
OPENSUSE-SU-2026:20151-1
SUSE-SU-2025:4413-1
SUSE-SU-2025:4440-1
SUSE-SU-2026:0817-1
SUSE-SU-2026:1169-1
SUSE-SU-2026:20222-1

Affected Products

Debian
Red Os
Wireshark