CVE-2025-5601: Wireshark

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Column handling crashes in Wireshark 4.4.0 to 4.4.6 and 4.2.0 to 4.2.12 allows denial of service via packet injection or crafted capture file

Affected products

  • Wireshark Wireshark: from 4.2.0, before 4.2.12 (fixed in 4.2.12); from 4.4.0, before 4.4.7 (fixed in 4.4.7)

Published 2025-06-04. Last modified 2026-06-17.