Impact
SOME/IP‑SD protocol dissector contains an out-of-bounds write that triggers a crash when Wireshark processes certain packets. The resulting denial of service prevents the application from continuing to capture or analyze traffic, but does not provide remote code execution or data exfiltration. The weakness is identified as CWE‑787.
Affected Systems
Wireshark users running Wireshark Foundation versions 4.6.0 through 4.6.2 or 4.4.0 through 4.4.12 are affected. These versions include the vulnerable dissector implementation. All other versions are presumed unaffected.
Risk and Exploitability
The CVSS score of 5.3 indicates moderate severity, and the EPSS score of less than 1% suggests a low probability of exploitation. The vulnerability is not listed in the CISA Known Exploited Vulnerabilities catalog. Attackers would need to supply a crafted SOME/IP‑SD packet that Wireshark parses; the likely attack vector is a local user or a system that automatically processes network traffic. The impact is limited to availability on the affected host.
OpenCVE Enrichment
Debian DSA