VDB
CNVD-2024-39130
CNVD-2024-39130
PUBLISHED
CVSS 3.5999999046325684 LOW
Wireshark(前称Ethereal)是导线鲨鱼(Wireshark)团队的一套网络数据包分析软件。该软件的功能是截取网络数据包,并显示出详细的数据以供分析。 Wireshark存在安全漏洞。攻击者可利用该漏洞导致系统拒绝服务。
Risk Scores
CVSS v3.1
3.5999999046325684
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:L
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Wireshark Foundation | editcap | 4.2.0, 4.0.0, 3.6.0 |
Timeline
- May 2, 2024 CVE Published
- May 10, 2025 PoC Published
References
- https://www.wireshark.org/security/wnpa-sec-2024-08.html url
- GitLab Issue #19724 issue
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/66H2BSENPSIALF2WIZF7M3QBVWYBMFGW/ url
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/7MKFJAZDKXGFFQPRDYLX2AANRNMYZZEZ/ url
- https://lists.debian.org/debian-lts-announce/2024/09/msg00049.html url