CVE detail
CVE-2026-5405
RDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 20.8 · diversity 14.5 · KEV 0.0 · OTX 0.0 · PoC 4.5
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
7 source links · newest first
- https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-5405.jsonsecurity.access.redhat.com
No excerpt available.
Vendor Advisorysecurity.access.redhat.comMay 1, 2026, 12:16 AM - https://bugzilla.redhat.com/show_bug.cgi?id=2464273bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comMay 1, 2026, 12:16 AM - https://access.redhat.com/security/cve/CVE-2026-5405access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 1, 2026, 12:16 AM - https://access.redhat.com/errata/RHSA-2026:26182access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 1, 2026, 12:16 AM - https://access.redhat.com/errata/RHSA-2026:20600access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 1, 2026, 12:16 AM - https://www.wireshark.org/security/wnpa-sec-2026-17.htmlwww.wireshark.org
No excerpt available.
Exploitwww.wireshark.orgMay 1, 2026, 12:16 AM No excerpt available.
Exploitgitlab.comMay 1, 2026, 12:16 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
1 repository references · best confidence 0.90 · max 0 stars
- wireshark/wiresharkHigh confidencegitlabNVD Exploit reference0 starsDiscovered Jul 15, 2026, 3:18 AM
NVD labels the source link as Exploit; this is not independent verification of the repository's code.
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-5403CVSS 7.8 · High
SBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
- CVE-2023-0667CVSS 6.5 · Medium
Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark version 4.0.5 and prior, in an unusual configuration, is susceptible to a heap-base…
- CVE-2023-0666CVSS 6.5 · Medium
Due to failure in validating the length provided by an attacker-crafted RTPS packet, Wireshark version 4.0.5 and prior, by default, is susceptible to a heap-based buffer overflow,…
- CVE-2026-40691CVSS 7.5 · High
In Unbound 1.9.0 up to and including 1.25.1, when a DNSCrypt query is received over TCP, the routine that encrypts the reply in place fails to bound the reply length against the d…
- CVE-2026-15422CVSS 9.1 · Critical
The illumos SCTP inbound path performs association lookup for INIT ACK chunks without adequately validating the address parameters carried in the chunk. Since this lookup runs dur…
- CVE-2026-55130CVSS 7.8 · High
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.