Home
HIGH: 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HDefault status
unknown
4.4.0 (semver) before 4.4.7
affected
4.2.0 (semver) before 4.2.13
affected
Description
Column handling crashes in Wireshark 4.4.0 to 4.4.6 and 4.2.0 to 4.2.12 allows denial of service via packet injection or crafted capture file
Problem types
CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Product status
4.4.0 (semver) before 4.4.7
4.2.0 (semver) before 4.2.13
References
www.wireshark.org/security/wnpa-sec-2025-02.html
gitlab.com/wireshark/wireshark/-/issues/20509 (GitLab Issue #20509)