CVE-2024-2955

HIGH

Wireshark <4.2.0, <4.0.14 - DoS

Title source: llm
STIX 2.1

Description

T.38 dissector crash in Wireshark 4.2.0 to 4.0.3 and 4.0.0 to 4.0.13 allows denial of service via packet injection or crafted capture file

Scores

CVSS v3 7.8
EPSS 0.0009
EPSS Percentile 26.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-763 CWE-762
Status published
Products (5)
fedoraproject/fedora 39
fedoraproject/fedora 40
wireshark/wireshark 4.0.0 - 4.0.14
Wireshark Foundation/Wireshark 4.0.0 - 4.0.14
Wireshark Foundation/Wireshark 4.2.0 - 4.2.4
Published Mar 26, 2024
Tracked Since Feb 18, 2026