Column handling crashes in Wireshark 4.4.0 to 4.4.6 and 4.2.0 to 4.2.12 allows denial of service via packet injection or crafted capture file
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade wireshark | Aug 8, 2025 | Jun 4, 2025 |
| Amazon Linux Ami 2 | — | Upgrade wireshark-debuginfoUpgrade wireshark-cliUpgrade wireshark-develUpgrade wireshark | May 20, 2026 | May 20, 2026 |
| Amazon_linux_2023 | — | Upgrade wireshark-debugsourceUpgrade wireshark-develUpgrade wireshark-cliUpgrade wireshark-cli-debuginfo | Nov 11, 2025 | Jun 4, 2025 |
| Debian | — | Upgrade wireshark | Jun 6, 2025 | Jun 4, 2025 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jun 4, 2025 |
| Suse | — | Upgrade libwsutil16Upgrade libwsutil8Upgrade libwiretap14Upgrade libwiretap7Upgrade wireshark-develUpgrade wiresharkUpgrade libwsutil15Upgrade libwireshark18Upgrade libwireshark9Upgrade libwscodecs1Upgrade wireshark-ui-qtUpgrade wireshark-gtkUpgrade libwireshark17Upgrade libwiretap15 | Jun 17, 2025 | Jun 4, 2025 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jul 2, 2025 | Jun 4, 2025 |
| Wireshark | — | Upgrade to Wireshark version 4.2.12Upgrade to Wireshark version 4.4.7 | Jun 5, 2025 | Jun 5, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub