Wireshark 4.6.2 Released With Crash Vulnerability Fixes and Protocol Updates
Wireshark, a prominent network protocol analyzer, has announced the release of version 4.6.2. This update includes critical security enhancements and significant bug resolutions.
Wireshark, a prominent network protocol analyzer, has announced the release of version 4.6.2. This update includes critical security enhancements and significant bug resolutions.
The update addresses two critical security vulnerabilities that could impact network analysis operations. The HTTP3 dissector crash vulnerability (wnpa-sec-2025-07) has been fixed, preventing potential denial-of-service conditions. Additionally, the MEGACO dissector infinite loop issue (wnpa-sec-2025-08) has been resolved, which could cause the application to hang during protocol traffic processing.
These patches are crucial for organizations using Wireshark for network troubleshooting and protocol analysis in production environments.
Compatibility and Functional Improvements
Version 4.6.2 resolves a significant API/ABI compatibility issue from the prior 4.6.1 release, restoring compatibility with plugins built for Wireshark 4.6.0. This fix eliminates disruptions for users with custom protocol dissectors and extensions.
Wireshark, a prominent network protocol analyzer, has announced the release of version 4.6.2.
The update also resolves a stack buffer overflow vulnerability in the wiretap BER decoder component, reducing security risks when analyzing specific file formats. Support for the Omnipeek file format has been restored, allowing continued work with archived network captures from Omnipeek hardware analyzers.
Wireshark 4.6.2 includes updated support for various network protocols, such as ATM PW, COSEM, COTP, DECT NR+, DMP, GTP, HTTP3, IEEE 802.15.4, ISOBUS, MAC-LTE, MAUSB, MEGACO, OsmoTRXD, PTP, RLC, SAPDIAG, and SMTP. These enhancements improve the ability to analyze and troubleshoot network traffic across various telecommunications and industrial protocols.
The Windows installer now includes Visual C++ Redistributable version 14.44.35112, ensuring compatibility with current Windows systems. Support for the Peektagged capture file format has also been added, expanding file compatibility options for network analysts.
Network security professionals and infrastructure teams are advised to upgrade to Wireshark 4.6.2 to ensure security vulnerability protection and restore full compatibility with existing plugin ecosystems.
Based on reporting by GBHackers.
