vulnerability

Wireshark : CVE-2024-4854 : MONGO and ZigBee TLV dissector infinite loops

Severity
7
CVSS
(AV:N/AC:H/Au:N/C:P/I:P/A:C)
Published
May 14, 2024
Added
Sep 24, 2024
Modified
Aug 11, 2025

Description

MONGO and ZigBee TLV dissector infinite loops in Wireshark 4.2.0 to 4.2.4, 4.0.0 to 4.0.14, and 3.6.0 to 3.6.22 allow denial of service via packet injection or crafted capture file

Solutions

wireshark-upgrade-3_6_23wireshark-upgrade-4_0_15wireshark-upgrade-4_2_5
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.