Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-72254
HistoryAug 28, 2023 - 12:00 a.m.

Wireshark Denial of Service Vulnerability (CNVD-2023-72254)

2023-08-2800:00:00
China National Vulnerability Database
www.cnvd.org.cn
14
wireshark
denial of service
bt sdp parser
network packet analysis
vulnerability
packet injection

EPSS

0.001

Percentile

29.6%

Wireshark (formerly known as Ethereal) is a set of network packet analysis software from the Wireshark team. The function of the software is to intercept network packets and display detailed data for analysis. Wireshark suffers from a denial-of-service vulnerability that originates from an infinite loop in the BT SDP parser, which can be exploited by an attacker to cause a denial of service via packet injection or a carefully crafted capture file.