VDB

CNVD-2023-62289

CNVD-2023-62289 PUBLISHED CVSS 5.300000190734863 MEDIUM

Wireshark(前称Ethereal)是导线鲨鱼(Wireshark)团队的一套网络数据包分析软件。该软件的功能是截取网络数据包,并显示出详细的数据以供分析。 Wireshark存在安全漏洞,该漏洞源于未对输入的错误消息做正确的处理,攻击者可利用该漏洞导致VMS TCPIPtrack文件解析器崩溃。

Risk Scores

CVSS v3.1
5.300000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L

Affected Products

VendorProductVersions
Wireshark FoundationWireshark>=4.0.0, <4.0.6, *

Timeline

  • May 24, 2023 CVE Published
  • Jan 15, 2025 PoC Published
  • May 2, 2026 Distribution Patch
  • May 2, 2026 Security Advisory
  • May 2, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›