PT-2022-13278 · Wireshark+5 · Wireshark+5
Sharon Brizinov
·
Published
2022-02-14
·
Updated
2025-06-04
·
CVE-2022-0582
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Wireshark versions 3.4.0 through 3.4.11
Wireshark versions 3.6.0 through 3.6.1
Description
The issue is related to unaligned access in the CSN.1 protocol dissector, which allows for denial of service via packet injection or crafted capture file.
Recommendations
For Wireshark versions 3.4.0 through 3.4.11, update to a version that fixes the unaligned access issue in the CSN.1 protocol dissector.
For Wireshark versions 3.6.0 through 3.6.1, update to a version that fixes the unaligned access issue in the CSN.1 protocol dissector.
As a temporary workaround, consider disabling the CSN.1 protocol dissector until a patch is available.
Exploit
Fix
DoS
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Astra Linux
Linuxmint
Suse
Ubuntu
Wireshark