CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:N/I:N/A:P
EPSS
Percentile
65.1%
The fragment_add_seq_common function in epan/reassemble.c in the ASN.1 BER dissector in Wireshark before r48943 has an incorrect pointer dereference during a comparison, which allows remote attackers to cause a denial of service (application crash) via a malformed packet.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Debian | 12 | all | wireshark | < 4.0.11-1~deb12u1 | wireshark_4.0.11-1~deb12u1_all.deb |
Debian | 11 | all | wireshark | < 3.4.10-0+deb11u1 | wireshark_3.4.10-0+deb11u1_all.deb |
Debian | 999 | all | wireshark | < 4.4.0-1 | wireshark_4.4.0-1_all.deb |
Debian | 13 | all | wireshark | < 4.4.0-1 | wireshark_4.4.0-1_all.deb |