PT-2022-13278 · Wireshark+5 · Wireshark+5

Sharon Brizinov

·

Published

2022-02-14

·

Updated

2025-06-04

·

CVE-2022-0582

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Wireshark versions 3.4.0 through 3.4.11 Wireshark versions 3.6.0 through 3.6.1
Description The issue is related to unaligned access in the CSN.1 protocol dissector, which allows for denial of service via packet injection or crafted capture file.
Recommendations For Wireshark versions 3.4.0 through 3.4.11, update to a version that fixes the unaligned access issue in the CSN.1 protocol dissector. For Wireshark versions 3.6.0 through 3.6.1, update to a version that fixes the unaligned access issue in the CSN.1 protocol dissector. As a temporary workaround, consider disabling the CSN.1 protocol dissector until a patch is available.

Exploit

Fix

DoS

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

ALT-PU-2022-1349
ALT-PU-2022-1368
ALT-PU-2022-1391
ALT-PU-2022-1599
AZL-8589
CVE-2022-0582
DLA-2967-1
DLA-3906-1
OESA-2022-2078
OPENSUSE-SU-2022:0722-1
OPENSUSE-SU-2022_0722-1
OPENSUSE-SU-2024:11858-1
SUSE-SU-2022:0722-1
USN-7552-1

Affected Products

Alt Linux
Astra Linux
Linuxmint
Suse
Ubuntu
Wireshark