Wireshark · Wireshark · CVE-2024-11596
**Name of the Vulnerable Software and Affected Versions**
Wireshark versions 4.2.0 through 4.2.8
Wireshark versions 4.4.0 through 4.4.1
**Description**
The issue allows for denial of service via packet injection or crafted capture file. It is related to the ECMP dissector crash in Wireshark.
**Recommendations**
For Wireshark versions 4.2.0 through 4.2.8, update to a version outside of this range to resolve the issue.
For Wireshark versions 4.4.0 through 4.4.1, update to a version outside of this range to resolve the issue.
As a temporary workaround, consider avoiding the use of crafted capture files or packet injection to minimize the risk of exploitation.