Описание
DLMS/COSEM protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4
A flaw was found in Wireshark. A remote attacker could exploit this vulnerability by sending a specially crafted DLMS/COSEM protocol packet. This could lead to an infinite loop in the DLMS/COSEM protocol dissector, resulting in a Denial of Service (DoS) for the affected system.
Меры по смягчению последствий
To mitigate this issue, avoid opening untrusted capture files or analyzing live network traffic from untrusted sources with Wireshark. Running Wireshark in a sandboxed environment can further limit the impact of potential vulnerabilities.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 10 | wireshark | Fix deferred | ||
| Red Hat Enterprise Linux 6 | wireshark | Fix deferred | ||
| Red Hat Enterprise Linux 7 | wireshark | Fix deferred | ||
| Red Hat Enterprise Linux 8 | wireshark | Fix deferred | ||
| Red Hat Enterprise Linux 9 | wireshark | Fix deferred |
Показывать по
Дополнительная информация
Статус:
EPSS
6.5 Medium
CVSS3
Связанные уязвимости
DLMS/COSEM protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4
DLMS/COSEM protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4
DLMS/COSEM protocol dissector infinite loop in Wireshark 4.6.0 to 4.6. ...
DLMS/COSEM protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4
Уязвимость диссектора протокола DLMS/COSEM анализатора трафика компьютерных сетей Wireshark, позволяющая нарушителю вызывать отказ в обслуживании
EPSS
6.5 Medium
CVSS3