Impact
The vulnerability is a stack‑based buffer overflow that occurs in Wireshark’s DBS Etherwatch file parser. It causes the application to crash when parsing a malformed DBS Etherwatch file, resulting in a denial of service. The flaw is classified as CWE‑121 and is a classic stack corruption weakness. Attackers who can supply a malicious file or otherwise trigger the parser may exploit the overflow, though the crash does not provide remote code execution.
Affected Systems
Affected are Wireshark 4.6.0 through 4.6.6 and 4.4.0 through 4.4.16. The product is Wireshark from the Wireshark Foundation.
Risk and Exploitability
The CVSS score of 7.5 indicates high impact, while the EPSS score of <1% shows a very low exploitation probability, and the vulnerability is not listed in the CISA KEV catalog. It vector is remote, involving the delivery of a crafted DBS Etherwatch file to a system running Wiresh by a user or system component that processes untrusted files, the denial of service can interrupt network monitoring and analysis functions.
OpenCVE Enrichment