CVE-2020-26421: Debian Linux
Medium severity, CVSS 5.3. EPSS: 2.6% chance of exploitation in the next 30 days.
Crash in USB HID protocol dissector and possibly other dissectors in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.
Affected products
- Debian Debian Linux: version 9.0 only
- Fedoraproject Fedora: version 32 only; version 33 only
- Oracle ZFS Storage Appliance Kit: version 8.8 only
- Wireshark Wireshark: from 3.2.0, up to and including 3.2.8; version 3.4.0 only
Published 2020-12-11. Last modified 2026-06-17.