Wireshark
cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*
- >= 4.6.0, <= 4.6.4
- >= 4.4.0, <= 4.4.14
A denial-of-service vulnerability has been identified in Wireshark versions 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14. The issue arises in the dissection engine, where improper handling of zlib decompression can lead to a crash.
Exploitation of this vulnerability causes a crash of the Wireshark application, leading to a denial-of-service condition.
Users can upgrade to Wireshark versions 4.6.5 or 4.4.15 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.