Wireshark · Wireshark · CVE-2021-39925
**Name of the Vulnerable Software and Affected Versions**
Wireshark versions 3.2.0 through 3.2.17
Wireshark versions 3.4.0 through 3.4.9
**Description**
The issue is caused by a buffer overflow in the Bluetooth SDP dissector, allowing a remote attacker to cause a denial of service via packet injection or a crafted capture file.
**Recommendations**
For Wireshark versions 3.2.0 through 3.2.17, update to a version that fixes the buffer overflow issue in the Bluetooth SDP dissector.
For Wireshark versions 3.4.0 through 3.4.9, update to a version that fixes the buffer overflow issue in the Bluetooth SDP dissector.
As a temporary workaround, consider disabling the Bluetooth SDP dissector until a patch is available.