Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-94899
HistoryNov 19, 2021 - 12:00 a.m.

Wireshark null pointer dereference vulnerability (CNVD-2021-94899)

2021-11-1900:00:00
China National Vulnerability Database
www.cnvd.org.cn
11

0.005 Low

EPSS

Percentile

76.4%

Wireshark is a network packet analysis software. Wireshark uses WinPCAP as an interface to exchange data packets directly with the network card.A null pointer dereference vulnerability exists in the IPPUSB parser in Wireshark versions 3.4.0 - 3.4.9. An attacker could exploit this vulnerability to cause a denial of service via packet injection or specially crafted capture files.

CPENameOperatorVersion
Wireshark Wireshark >=3.4.0,lt3.4.10