Описание
SOME/IP-SD protocol dissector crash in Wireshark 4.6.0 to 4.6.2 and 4.4.0 to 4.4.12 allows denial of service
A flaw was found in Wireshark. A remote attacker could entice a user to open a specially crafted packet capture file. This action would trigger a crash in the SOME/IP-SD protocol dissector, leading to a Denial of Service (DoS) for the affected system.
Отчет
This vulnerability is rated Moderate for Red Hat. An out-of-bounds write in the Wireshark SOME/IP-SD protocol dissector can lead to a denial of service. Exploitation requires user interaction, as a victim must open a specially crafted packet trace file or capture malicious network traffic. Impact is limited to systems where Wireshark is installed and actively used to process untrusted network captures.
Меры по смягчению последствий
To mitigate this issue, avoid opening untrusted capture files or analyzing untrusted live network traffic with Wireshark. Users should only process network data from known and trusted sources. If Wireshark is not actively used, consider removing the package to reduce the attack surface.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 10 | wireshark | Fix deferred | ||
| Red Hat Enterprise Linux 6 | wireshark | Fix deferred | ||
| Red Hat Enterprise Linux 7 | wireshark | Fix deferred | ||
| Red Hat Enterprise Linux 8 | wireshark | Fix deferred | ||
| Red Hat Enterprise Linux 9 | wireshark | Fix deferred |
Показывать по
Дополнительная информация
Статус:
EPSS
5.3 Medium
CVSS3
Связанные уязвимости
SOME/IP-SD protocol dissector crash in Wireshark 4.6.0 to 4.6.2 and 4.4.0 to 4.4.12 allows denial of service
SOME/IP-SD protocol dissector crash in Wireshark 4.6.0 to 4.6.2 and 4.4.0 to 4.4.12 allows denial of service
SOME/IP-SD protocol dissector crash in Wireshark 4.6.0 to 4.6.2 and 4. ...
SOME/IP-SD protocol dissector crash in Wireshark 4.6.0 to 4.6.2 and 4.4.0 to 4.4.12 allows denial of service
Уязвимость анализатора трафика компьютерных сетей Wireshark, связанная с записью за границами буфера в памяти, позволяющая нарушителю выполнить произвольный код
EPSS
5.3 Medium
CVSS3