CVE-2023-0411
MEDIUMWireshark < 3.6.10 - Denial of Service
Title source: ruleDescription
Excessive loops in multiple dissectors in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
Scores
CVSS v3
6.3
EPSS
0.0007
EPSS Percentile
22.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Classification
CWE
CWE-834
Status
published
Affected Products (1)
wireshark/wireshark
< 3.6.10
Timeline
Published
Jan 26, 2023
Tracked Since
Feb 18, 2026