Impact
A null pointer dereference flaw exists in the CMS protocol dissector of Wireshark. The bug can cause the application to crash, resulting in a denial‑of‑service condition for users who rely on Wireshark to analyze network traffic. This weakness corresponds to CWE‑476 and is triggered when Wireshark processes data matching the CMS protocol.
Affected Systems
The vulnerability affects Wireshark versions 4.6.0 through 4.6.7 and 4.4.0 through 4.4.18, released by the Wireshark Foundation. Any system running these affected builds and parsing CMS traffic is vulnerable.
Risk and Exploitability
The CVSS score is 4.7, indicating moderate severity, and no EPSS score is available. The vulnerability is not listed in the CISA KEV catalog. Based on the description, the likely attack vector is local user execution; a malicious user or software that feeds crafted CMS traffic into Wireshark can trigger the crash, interrupting network monitoring services. Because the flaw leads only to an application crash rather than code execution, the risk is limited to service disruption.
OpenCVE Enrichment
Debian DSA