Impact
This vulnerability allows an attacker to supply a malicious pcapng file that triggers an out‑of‑bounds read in Wireshark’s file parser, causing the application to crash. The crash results in a denial of service that can disrupt network analysis activities. The weakness is a classic out‑of‑bounds read identified as CWE‑125.
Affected Systems
The flaw exists in Wireshark Foundation Wireshark for versions 4.6.0 through 4.6.7 and 4.4.0 through 4.4.18.
Risk and Exploitability
The CVSS score of 4.7 indicates modest severity, and there is no current EPSS score available. The vulnerability is not in CISA’s KEV catalog. The primary attack vector is inferred to be the use of a crafted pcapng file either locally opened by a user or remotely supplied to a Wireshark instance that parses untrusted files. No documented exploit exists, but any user capable of providing a malformed file could trigger the service disruption.
OpenCVE Enrichment