Impact
The RRC protocol dissector in Wireshark has an out-of-bounds write that can crash the application, providing an out-of-bounds overwrite weakness (CWE-787). When exploited, the crash results in denial of service for users running the affected versions of the software.
Affected Systems
Wireshark Foundation’s Wireshark product versions 4.6.0 through 4.6.7 and 4.4.0 through 4.4.18 are vulnerable. Users must upgrade to version 4.6.8 or later to address the flaw.
Risk and Exploitability
The CVSS score of 7.5 indicates a moderate to high severity. The EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog. The flaw can be triggered by feeding crafted RRC protocol packets to a running Wireshark instance, causing an out-of-bounds write that terminates the process. The attack vector is likely remote, as Wireshark can process network traffic captured from external sources.
OpenCVE Enrichment