Wireshark · Wireshark · CVE-2023-2857
**Name of the Vulnerable Software and Affected Versions**
Wireshark versions 3.6.0 through 3.6.13
Wireshark versions 4.0.0 through 4.0.5
**Description**
The issue is related to a crash in the BLF file parser, which can be exploited to cause a denial of service via a crafted capture file.
**Recommendations**
For Wireshark versions 3.6.0 through 3.6.13, update to a version outside of this range to resolve the issue.
For Wireshark versions 4.0.0 through 4.0.5, update to a version outside of this range to resolve the issue.
As a temporary workaround, consider avoiding the use of crafted capture files until a patch is available.