Impact
The vulnerability is a NULL pointer dereference in the SSH protocol dissector within Wireshark. Exploiting the flaw causes the application to crash, leading to a denial‑of‑service condition. The flaw is categorized as CWE-476 and does not provide remote code execution, privilege escalation, or data disclosure.
Affected Systems
The flaw affects Wireshark versions 4.6.0 through 4.6.6 and 4.4.0 through 4.4.16. Versions newer than 4.6.7 contain the patch that eliminates the crash.
Risk and Exploitability
The public CVSS score is 5.5, placing the vulnerability at moderate severity. The EPSS score is < 1%, and the flaw is not listed in CISA's Known Exploited Vulnerabilities catalog. Based on the description, it is inferred that an attacker must provide a crafted SSH packet that Wireshark processes to trigger the crash. The vulnerability does not provide remote code execution or privilege escalation; the primary risk is a denial‑of‑service that may impact critical network‑monitoring services.
OpenCVE Enrichment