-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 02 May 2026 11:19:48 +0200 Source: wireshark Built-For-Profiles: noudeb Architecture: source Version: 4.6.5-1 Distribution: unstable Urgency: medium Maintainer: Debian Security Tools <team+pkg-security@tracker.debian.org> Changed-By: Balint Reczey <balint@balintreczey.hu> Closes: 1135323 Changes: wireshark (4.6.5-1) unstable; urgency=medium . * New upstream release - security fixes (Closes: #1135323): * Monero dissector crash (CVE-2026-5409) * BT-DHT dissector crash (CVE-2026-5408) * FC-SWILS dissector crash (CVE-2026-5406) * SMB2 dissector infinite loop (CVE-2026-5407) * ICMPv6 dissector crash (CVE-2026-5299) * AFP dissector crash (CVE-2026-5401) * TLS dissector crash and possible code execution (CVE-2026-5402) * K12 RF5 file parser crash (CVE-2026-5404) * SBC codec crash and possible code execution (CVE-2026-5403) * RDP dissector crash and possible code execution (CVE-2026-5405) * AMR-NB codec crash (CVE-2026-5654) * SDP dissector crash (CVE-2026-5655) * iLBC audio codec crash (CVE-2026-5657) * Profile import crash and possible code execution (CVE-2026-5656) * DCP-ETSI protocol dissector crash (CVE-2026-5653) * BEEP protocol dissector crash (CVE-2026-6538) * ZigBee protocol dissector crash (CVE-2026-6537) * DLMS/COSEM protocol dissector infinite loop (CVE-2026-6536) * Dissection engine zlib decompression crash (CVE-2026-6535) * USB HID protocol dissector infinite loop (CVE-2026-6534) * Dissection engine LZ77 decompression crash (CVE-2026-6533) * Kismet protocol dissector crash (CVE-2026-6532) * SANE protocol dissector infinite loop (CVE-2026-6531) * DCP-ETSI protocol dissector crash (CVE-2026-6530) * iLBC audio codec crash (CVE-2026-6529) * TLS dissector infinite loop (CVE-2026-6528) * ASN.1 PER protocol dissector crash (CVE-2026-6527) * RTSP protocol dissector crash (CVE-2026-6526) * IEEE 802.11 protocol dissector crash (CVE-2026-6525) * MySQL protocol dissector crash (CVE-2026-6524) * GNW protocol dissector infinite loop (CVE-2026-6523) * OpenFlow v5 protocol dissector infinite loops (CVE-2026-6521) * OpenFlow v6 protocol dissector infinite loop (CVE-2026-6520) * MBIM dissector infinite loop (CVE-2026-6519) * RPKI-Router protocol dissector infinite loop (CVE-2026-6522) * GSM RP protocol dissector crash (CVE-2026-6870) * WebSocket protocol dissector crash (CVE-2026-6869) * SMB2 protocol dissector crash * HTTP protocol dissector crash (CVE-2026-6868) * Sharkd utility memory leak * Sharkd utility crash * Sharkd utility crash * UDS protocol dissector infinite loop * Update symbols Checksums-Sha1: 54d2d4b3a0936ada43bf62c193cd622141715196 3698 wireshark_4.6.5-1.dsc d1576dba55d05a8c597042fb8f53b10c63b2c1d9 62944866 wireshark_4.6.5.orig.tar.bz2 d5110cceec4e24c34bba695ee8a9259062d1734c 91012 wireshark_4.6.5-1.debian.tar.xz ce9241003353cef6913de29992f09ae40848dc14 25163 wireshark_4.6.5-1_source.buildinfo Checksums-Sha256: f736059f9d1a90179a7a32c18156d9b10187488820e77f72705e3fdb377183b8 3698 wireshark_4.6.5-1.dsc d16374f06a47dee2a17e6353ab1870aef20f862b4e200d46c8ec7491bf2bd204 62944866 wireshark_4.6.5.orig.tar.bz2 3db776250a3c8a1647198709b21b5ce4b014699f21bab2624dea6a63e968668e 91012 wireshark_4.6.5-1.debian.tar.xz 4fd9252d85f4737205cc41bfca85fdfc50f576b712ae40a35ba4752976f22d5d 25163 wireshark_4.6.5-1_source.buildinfo Files: 10c75eadadb1002e57ba011726e16899 3698 net optional wireshark_4.6.5-1.dsc b98eda0e9d95a8826f0d0305526e6dd7 62944866 net optional wireshark_4.6.5.orig.tar.bz2 d823801b262eadef333d11cbaccd6a87 91012 net optional wireshark_4.6.5-1.debian.tar.xz f176e5fe54e5c7e322ee26a67a76c753 25163 net optional wireshark_4.6.5-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEI/PvTgXX55rLQUfDg6KBkWslS0UFAmn1/H4ACgkQg6KBkWsl S0WwkxAAhdUC2y6iWXp5+hL0hR2gHlKs2NxlF2FONr4fbE6+xl43tP9n2IIrQr+b nMnKdWQaa2kP/azODiVjDAYeMkzCKs8gtK+EhKcGkIH8uvD5wbTvs1QO7aOxIHqf /wYoQq+tmGA1mjw6bIkzXB8QeatPb8SmDIRaKXyzC9J9AWjMqeXy85C/QYPpmV7O bebjtxix7W68jfO+Z95dhpwewuMyuLDyw1tigyCJDCC0UCL7weYzHW4Uo5ccm/AJ 0auCLjDtolLBHlyI7PZfq/D3yX2QX+FrfUDolB2aNIh2x6sulduMV1NfgkHfN8Un 9wl1OAU9m6nUTGb3rk5qf5QKRtDxaQ4Vku3vvklxUp7cI/kcWBpxMAeGN7cx9cLp MT05bvkjXVNxWZQOLD/qzMMQU4hU0KH/XixcajK26uBKaE9CDPRI93VGmEnvLZSX V9GPw1gyb4dE8qeMgRnygD5uH9dN0BwfLQlmbh9+X1ycVTghAEYiztDBSiFn1Vf0 Or57N3o8O2cYgQ4Dl/RaNbDm/fjrDM18V/IFow2AjvHZMANQWxtznWM9UrtJPiUi yLXHds0l6SA0sJ7MEZdenI9vbZdSCMV4T4BD/nJkRoMhdo9zngmsFsKuIjf3Lbca kAfmiLK0wgfOCVcl2TtSpxWUAZCxKfUidW05BAeQH90xnGxNN4k= =zUls -----END PGP SIGNATURE-----