Description
Kafka dissector crash in Wireshark 4.0.0 to 4.0.6 and 3.6.0 to 3.6.14 allows denial of service via packet injection or crafted capture file
No analysis available yet.
Remediation
Vendor Solution
Upgrade to versions 4.0.7, 3.6.15 or above.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3906-1 | wireshark security update |
EUVD |
EUVD-2023-44292 | Kafka dissector crash in Wireshark 4.0.0 to 4.0.6 and 3.6.0 to 3.6.14 allows denial of service via packet injection or crafted capture file |
References
History
Mon, 03 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 23 Oct 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2025-11-03T21:48:50.564Z
Reserved: 2023-07-13T02:20:56.371Z
Link: CVE-2023-3648
Updated: 2024-08-02T07:01:57.363Z
Status : Modified
Published: 2023-07-14T07:15:08.387
Modified: 2026-06-17T06:14:32.490
Link: CVE-2023-3648
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-762
Mismatched Memory Management Routines
- NVD-CWE-Other
Debian DLA
EUVD