Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:47147
HistoryMay 23, 2024 - 11:16 a.m.

Denial Of Service (DOS)

2024-05-2311:16:48
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
2
wireshark
vulnerability
memory handling
dos
crafted file

CVSS3

3.6

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:L

AI Score

6.5

Confidence

Low

EPSS

0

Percentile

9.6%

Wireshark is vulnerable to Denial Of Service (DOS). The vulnerability is caused due to memory handling issue which can be exploited to mount Denial Of Service (DOS) via crafted capture file.

CVSS3

3.6

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:L

AI Score

6.5

Confidence

Low

EPSS

0

Percentile

9.6%