# Wireshark v4.6.7 - Product: Wireshark (https://whatsnew.fyi/product/wireshark) - Vendor: Wireshark Foundation - Date: 2026-07-08 - Version: v4.6.7 - Original notes: https://gitlab.com/wireshark/wireshark/-/tags/v4.6.7 - Permalink: https://whatsnew.fyi/product/wireshark/releases/v4.6.7 - Labels: Platforms: Desktop What's New is an index, not a publisher: every entry below links to the vendor's own release notes, which are the authoritative source. Entries are labelled where they are hand-curated sample data, pre-releases, or drawn from a secondary source such as a developer blog. Reuse: the summaries, labels and curation here are © What's New. Quote freely with attribution and a link back; wholesale republication of the corpus is not permitted — terms: https://whatsnew.fyi/terms. The vendors' own release notes remain their publishers'. --- Tag: v4.6.7 - **security** — Fix Catapult DCT2000 protocol dissector crash - **security** — Fix pcapng file parser crash - **security** — Fix FMP/NOTIFY protocol dissector large loop - **security** — Fix SSH protocol dissector crash - **security** — Fix TLS ECH decryption crash - **security** — Fix IEEE 802.11 protocol dissector crash - **security** — Fix Z39.50 protocol dissector crash - **security** — Fix UMTS FP protocol dissector crash - **security** — Fix BLF file parser information disclosure - **security** — Fix multiple protocol dissector infinite loops - **security** — Fix DBS Etherwatch file parser crash - **security** — Fix Ciscodump extcap crash - **fixed** — Fix Wireshark appearing in German when the system language is Dutch - **fixed** — Fix Qt capture filter combo box not enforcing minimum size or expanding size policy - **fixed** — Fix BACapp error parsing you-are request - **fixed** — Fix use-after-free in Ethernet POWERLINK (EPL) dissector during profile loading error path - **fixed** — Fix sponsor slides not being properly shown - **fixed** — Fix IPv6 ping from Debian being dissected as HiPerConTracer - **fixed** — Fix HEVC (H.265) dissector bit_offset not advanced after sub_layer_hrd_parameters causing false malformed packet - **changed** — Build Windows installers with Visual Studio 2026 #### Wireshark 4.6.7 Release Notes ##### What is Wireshark? Wireshark is the world’s most popular network protocol analyzer. It is used for troubleshooting, analysis, development and education. Wireshark is hosted by the Wireshark Foundation, a nonprofit which promotes protocol analysis education. Wireshark and the foundation depend on your contributions in order to do their work. If you or your organization would like to contribute or become a sponsor, please visit wiresharkfoundation.org. If you use Wireshark professionally or you just want to learn more about protocol analysis, you should join us at SharkFest, the Wireshark developer and user conference. You can also become a Wireshark Certified Analyst! Official Wireshark training and certification are available from the Wireshark Foundation. ##### What’s New ###### Bug Fixes The following vulnerabilities have been fixed: - wnpa-sec-2026-52 Catapult DCT2000 protocol dissector crash. Issue 21270. - wnpa-sec-2026-53 pcapng file parser crash. Issue 21285. - wnpa-sec-2026-54 FMP/NOTIFY protocol dissector large loop. Issue 21347. - wnpa-sec-2026-55 SSH protocol dissector crash. Issue 21378. - wnpa-sec-2026-56 TLS ECH decryption crash. Issue 21390. - wnpa-sec-2026-57 IEEE 802.11 protocol dissector crash. Issue 21391. - wnpa-sec-2026-58 Z39.50 protocol dissector crash. Issue 21397. - wnpa-sec-2026-59 UMTS FP protocol dissector crash. Issue 21398. - wnpa-sec-2026-60 BLF file parser information disclosure. Issue 21361. - wnpa-sec-2026-61 Multiple protocol dissector infinite loops. Issue 21275, Issue 21277, Issue 21330, Issue 21383. - wnpa-sec-2026-62 DBS Etherwatch file parser crash. Issue 21352. - wnpa-sec-2026-63 Ciscodump extcap crash. Issue 21375. The following bugs have been fixed: - Wireshark appears in German when the system language is Dutch. Issue 20347. - Qt: Capture filter combo box does not enforce minimum size or expanding size policy. Issue 21080. - BACapp: Error parsing you-are request. Issue 21260. - Use-After-Free in Ethernet POWERLINK (EPL) Dissector during profile loading error path. Issue 21267. - Sponsor slides are not properly shown. Issue 21268. - Buffer overlow/segfault in Catapult DCT2000 dissector via not check no_ddi_entries in header. Issue 21270. - Fuzz job issue: fuzz-2026-05-24-14517548985.pcap. Issue 21272. - Fuzz job UTF-8 encoding issue: fuzz-2026-06-07-14732586286.pcap. Issue 21331. - Memory leak in alp-sample1.pcap. Issue 21343. - Memory leak in nspi.pcap. Issue 21344. - Heap-Buffer-Overflow in Wireshark Logcat Parser. Issue 21346. - IPv6 Ping from Debian (among others) is dissected as "HiPerConTracer" Issue 21349. - HEVC (H.265) dissector: bit_offset not advanced after sub_layer_hrd_parameters() causes false Malformed Packet. Issue 21362. - dfilter_compile_full: heap-buffer-overflow READ in ws_strptime on a time literal. Issue 21376. - Wireshark crashes with a HEAP_CORRUPTION error when using the last saved recent_common file. Issue 21379. - Fuzz job issue: fuzz-2026-06-30-15106674620.pcap. Issue 21381. ###### New and Updated Features - The Windows installers are now built with Visual Studio 2026. ###### New Protocol Support There are no new protocols in this release. ###### Updated Protocol Support ALC, BACapp, C2P, Catapult DCT2000, COTP, CSN.1, DCERPC, DCERPC MAPI, DCERPC NSPI, DNS, DVB-S2-TABLE, eDonkey, EPL, FC ELS, FMP/NOTIFY, H.265, HiPerConTracer, IEEE 802.11, LLS, MEGACO, MIH, MPEG DSM-CC, MS-WSP, RELOAD, SGP.32, SSH, STANAG 4607, UMTS FP, WOWW, and Z39.50 ###### New and Updated Capture File Support Android Logcat, BLF, DBS Etherwatch, Netlog, and pcapng ###### New and Updated File Format Decoding Support There is no new or updated file format support in this release. ###### Plugin Development Changes On UN*X systems (excluding macOS when running from an app bundle, as with the official installer) extcap binaries are now searched for under the libexec directory by default, e.g., /usr/libexec/wireshark/extcap instead of /usr/lib64/wiresh _[Truncated at 4000 characters — full notes: https://gitlab.com/wireshark/wireshark/-/tags/v4.6.7]_