Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-62294
HistoryOct 31, 2022 - 12:00 a.m.

Wireshark Denial of Service Vulnerability (CNVD-2023-62294)

2022-10-3100:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
wireshark
denial of service
vulnerability
network packet analysis
software
error messages
attacker
packet injection
file capture

0.002 Low

EPSS

Percentile

53.3%

Wireshark (formerly known as Ethereal) is a set of network packet analysis software from the Wireshark team. The function of the software is to intercept network packets and display detailed data for analysis. Wireshark suffers from a denial of service vulnerability that stems from not properly handling incoming error messages, which can be exploited by an attacker to cause a denial of service via packet injection or manual file capture.

CPENameOperatorVersion
wireshark wireshark >=3.6.0,le3.6.8