Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-13499

Опубликовано: 21 нояб. 2025
Источник: redhat
CVSS3: 7.3

Описание

Kafka dissector crash in Wireshark 4.6.0 and 4.4.0 to 4.4.10 allows denial of service

An uninitialized pointer access has been discovered in Wireshark. An attacker who can provide crafted input may be able to leverage this pointer access weakness to crash the application.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6wiresharkOut of support scope
Red Hat Enterprise Linux 7wiresharkOut of support scope
Red Hat Enterprise Linux 8wiresharkNot affected
Red Hat Enterprise Linux 10wiresharkFixedRHSA-2025:2308310.12.2025
Red Hat Enterprise Linux 10.0 Extended Update SupportwiresharkFixedRHSA-2026:048312.01.2026
Red Hat Enterprise Linux 9wiresharkFixedRHSA-2025:2314211.12.2025
Red Hat Enterprise Linux 9.0 Update Services for SAP SolutionswiresharkFixedRHSA-2026:043312.01.2026
Red Hat Enterprise Linux 9.2 Update Services for SAP SolutionswiresharkFixedRHSA-2026:045212.01.2026
Red Hat Enterprise Linux 9.4 Extended Update SupportwiresharkFixedRHSA-2026:043212.01.2026
Red Hat Enterprise Linux 9.6 Extended Update SupportwiresharkFixedRHSA-2026:045412.01.2026

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-824
https://bugzilla.redhat.com/show_bug.cgi?id=2416293wireshark: Access of Uninitialized Pointer in Wireshark

7.3 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
5 месяцев назад

Kafka dissector crash in Wireshark 4.6.0 and 4.4.0 to 4.4.10 allows denial of service

CVSS3: 7.8
nvd
5 месяцев назад

Kafka dissector crash in Wireshark 4.6.0 and 4.4.0 to 4.4.10 allows denial of service

CVSS3: 7.8
debian
5 месяцев назад

Kafka dissector crash in Wireshark 4.6.0 and 4.4.0 to 4.4.10 allows de ...

rocky
4 месяца назад

Important: wireshark security update

rocky
4 месяца назад

Important: wireshark security update

7.3 High

CVSS3