Kafka dissector crash in Wireshark 4.0.0 to 4.0.6 and 3.6.0 to 3.6.14 allows denial of service via packet injection or crafted capture file
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3906-1 | wireshark security update |
EUVD |
EUVD-2023-44292 | Kafka dissector crash in Wireshark 4.0.0 to 4.0.6 and 3.6.0 to 3.6.14 allows denial of service via packet injection or crafted capture file |
Fixes
Solution
Upgrade to versions 4.0.7, 3.6.15 or above.
Workaround
No workaround given by the vendor.
References
History
Mon, 03 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 23 Oct 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2025-11-03T21:48:50.564Z
Reserved: 2023-07-13T02:20:56.371Z
Link: CVE-2023-3648
Updated: 2024-08-02T07:01:57.363Z
Status : Modified
Published: 2023-07-14T07:15:08.387
Modified: 2025-11-03T22:16:25.480
Link: CVE-2023-3648
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD