CVE Published: 07/06/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: AHA |
Vendor: Wireshark Foundation |
Product: Wireshark Status : PUBLISHED
CVE-2023-0667 Description
Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark version 4.0.5 and prior, in an unusual configuration, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark