CVE Published: 14/05/2024 |
CVE Updated: 29/08/2024 |
CVE Year: 2024 Source: GitLab |
Vendor: Wireshark Foundation |
Product: Wireshark Status : PUBLISHED
CVE-2024-4854 Description
MONGO and ZigBee TLV dissector infinite loops in Wireshark 4.2.0 to 4.2.4, 4.0.0 to 4.0.14, and 3.6.0 to 3.6.22 allow denial of service via packet injection or crafted capture file
Metrics
CVSS Version: 3.1 |
Base Score: 6.4 MEDIUM Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:H