PT-2023-4615 · Wireshark+3 · Wireshark+3

Aha!

+2

·

Published

2023-08-24

·

Updated

2024-09-30

·

CVE-2023-2906

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Wireshark versions 2.0.0 through 4.0.7
Description The issue is related to a divide by zero error in the CP2179 component of Wireshark, which can be exploited by a remote attacker to cause a denial of service. This occurs due to a failure in validating the length provided by an attacker-crafted CP2179 packet.
Recommendations For Wireshark versions 2.0.0 through 4.0.7, update to a version that fixes the divide by zero error in the CP2179 component to prevent denial of service attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Divide By Zero

Weakness Enumeration

Related Identifiers

ALT-PU-2023-5646
ALT-PU-2023-5647
ALT-PU-2023-5648
ALT-PU-2023-5823
ALT-PU-2023-6556
AZL-28486
AZL-44175
BDU:2023-05022
CVE-2023-2906
DLA-3906-1
DSA-5559-1
MGASA-2023-0275
OESA-2023-1652
OPENSUSE-SU-2024:13184-1
ROSA-SA-2024-2390
SUSE-SU-2023:3778-1
SUSE-SU-2023_3778-1

Affected Products

Alt Linux
Astra Linux
Suse
Wireshark