Impact
The vulnerability is a heap‑based buffer overflow located in the UMTS FP protocol dissector of Wireshark. It is associated with CWE-122 and CWE-617. When Wireshark parses maliciously crafted UMTS FP packets, a buffer overrun occurs that can crash the application and bring the program to a stop. The result is a denial of service, which prevents the user from capturing or analysing network traffic until the software is restarted or updated.
Affected Systems
Wireshark releases 4.6.0 through 4.6.7 and 4.4.0 through 4.4.18 are affected. The issue originates in the Wireshark Foundation product Wireshark.
Risk and Exploitability
The CVSS score of 4.7 indicates a moderate risk level. The EPSS score of < 1% shows a very low exploitation probability, and the vulnerability is not listed in the CISA KEV catalog, suggesting that known exploitation is limited or not confirmed. The likely attack vector is the receipt of a specially crafted UMTS FP packet; therefore, any environment that processes such packets could experience a crash without proper mitigation.
OpenCVE Enrichment
Debian DSA