Security update for wireshark
| Announcement ID: | SUSE-SU-2026:20222-1 |
|---|---|
| Release Date: | 2026-02-02T12:56:02Z |
| Rating: | moderate |
| References: | |
| Cross-References: | |
| CVSS scores: |
|
| Affected Products: |
|
An update that solves eight vulnerabilities can now be installed.
Description:
This update for wireshark fixes the following issues:
Update to Wireshark 4.4.13:
- CVE-2025-11626: MONGO dissector infinite loop (bsc#1251933).
- CVE-2025-13499: Kafka dissector crash (bsc#1254108).
- CVE-2025-13945: HTTP3 dissector crash (bsc#1254471).
- CVE-2025-13946: MEGACO dissector infinite loop (bsc#1254472).
- CVE-2025-9817: SSH dissector crash (bsc#1249090).
- CVE-2026-0959: IEEE 802.11 dissector crash (bsc#1256734).
- CVE-2026-0961: BLF file parser crash (bsc#1256738).
- CVE-2026-0962: SOME/IP-SD dissector crash (bsc#1256739).
Full changelog:
https://www.wireshark.org/docs/relnotes/wireshark-4.4.13.html
Patch Instructions:
To install this SUSE update use the SUSE recommended
installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
-
SUSE Linux Enterprise Server 16.0
zypper in -t patch SUSE-SLES-16.0-236=1 -
SUSE Linux Enterprise Server for SAP Applications 16.0
zypper in -t patch SUSE-SLES-16.0-236=1
Package List:
-
SUSE Linux Enterprise Server 16.0 (aarch64 ppc64le s390x x86_64)
- wireshark-4.4.13-160000.1.1
- wireshark-devel-4.4.13-160000.1.1
- libwireshark18-4.4.13-160000.1.1
- libwiretap15-4.4.13-160000.1.1
- libwiretap15-debuginfo-4.4.13-160000.1.1
- wireshark-ui-qt-4.4.13-160000.1.1
- libwsutil16-4.4.13-160000.1.1
- wireshark-debugsource-4.4.13-160000.1.1
- libwireshark18-debuginfo-4.4.13-160000.1.1
- wireshark-debuginfo-4.4.13-160000.1.1
- wireshark-ui-qt-debuginfo-4.4.13-160000.1.1
- libwsutil16-debuginfo-4.4.13-160000.1.1
-
SUSE Linux Enterprise Server for SAP Applications 16.0 (ppc64le x86_64)
- wireshark-4.4.13-160000.1.1
- wireshark-devel-4.4.13-160000.1.1
- libwireshark18-4.4.13-160000.1.1
- libwiretap15-4.4.13-160000.1.1
- libwiretap15-debuginfo-4.4.13-160000.1.1
- wireshark-ui-qt-4.4.13-160000.1.1
- libwsutil16-4.4.13-160000.1.1
- wireshark-debugsource-4.4.13-160000.1.1
- libwireshark18-debuginfo-4.4.13-160000.1.1
- wireshark-debuginfo-4.4.13-160000.1.1
- wireshark-ui-qt-debuginfo-4.4.13-160000.1.1
- libwsutil16-debuginfo-4.4.13-160000.1.1
References:
- https://www.suse.com/security/cve/CVE-2025-11626.html
- https://www.suse.com/security/cve/CVE-2025-13499.html
- https://www.suse.com/security/cve/CVE-2025-13945.html
- https://www.suse.com/security/cve/CVE-2025-13946.html
- https://www.suse.com/security/cve/CVE-2025-9817.html
- https://www.suse.com/security/cve/CVE-2026-0959.html
- https://www.suse.com/security/cve/CVE-2026-0961.html
- https://www.suse.com/security/cve/CVE-2026-0962.html
- https://bugzilla.suse.com/show_bug.cgi?id=1249090
- https://bugzilla.suse.com/show_bug.cgi?id=1251933
- https://bugzilla.suse.com/show_bug.cgi?id=1254108
- https://bugzilla.suse.com/show_bug.cgi?id=1254471
- https://bugzilla.suse.com/show_bug.cgi?id=1254472
- https://bugzilla.suse.com/show_bug.cgi?id=1256734
- https://bugzilla.suse.com/show_bug.cgi?id=1256738
- https://bugzilla.suse.com/show_bug.cgi?id=1256739