VDB
DEBIAN-CVE-2024-4854
DEBIAN-CVE-2024-4854
PUBLISHED
CVSS 7.5 HIGH
MONGO and ZigBee TLV dissector infinite loops in Wireshark 4.2.0 to 4.2.4, 4.0.0 to 4.0.14, and 3.6.0 to 3.6.22 allow denial of service via packet injection or crafted capture file
Risk Scores
CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:13 | wireshark | 0, 0 |
| Debian:11 | wireshark | 3.4.4-1, 3.4.6-1~exp1, 3.4.7-1 |
| Debian:14 | wireshark | 0, 0 |
| Debian:12 | wireshark | 4.0.7-1, 4.0.3-1, 4.0.8-1 |
Timeline
- May 14, 2024 CVE Published
- Apr 28, 2026 CVE Updated