PT-2023-4615 · Wireshark+3 · Wireshark+3

Aha!

+2

·

Publicado

2023-08-24

·

Atualizado

2024-09-30

·

CVE-2023-2906

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Wireshark versions 2.0.0 through 4.0.7
Description The issue is related to a divide by zero error in the CP2179 component of Wireshark, which can be exploited by a remote attacker to cause a denial of service. This occurs due to a failure in validating the length provided by an attacker-crafted CP2179 packet.
Recommendations For Wireshark versions 2.0.0 through 4.0.7, update to a version that fixes the divide by zero error in the CP2179 component to prevent denial of service attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Divide By Zero

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2023-5646
ALT-PU-2023-5647
ALT-PU-2023-5648
ALT-PU-2023-5823
ALT-PU-2023-6556
AZL-28486
AZL-44175
BDU:2023-05022
CVE-2023-2906
DLA-3906-1
DSA-5559-1
MGASA-2023-0275
OESA-2023-1652
OPENSUSE-SU-2024:13184-1
ROSA-SA-2024-2390
SUSE-SU-2023:3778-1
SUSE-SU-2023_3778-1

Produtos afetados

Alt Linux
Astra Linux
Suse
Wireshark