CVE-2023-0668
published 2023-06-07CVE-2023-0668: Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and prior, by default, is susceptible to a…
PriorityP434medium6.5CVSS 3.1
AVNACLPRNUIRSUCNINAH
EPSS
2.26%
81.0th percentile
Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and prior, by default, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | wireshark | < wireshark 4.0.6-1~deb12u1 (bookworm) | wireshark 4.0.6-1~deb12u1 (bookworm) |
| wireshark | wireshark | >= 0 < 3.4.16-0+deb11u1 | 3.4.16-0+deb11u1 |
| wireshark | wireshark | >= 0 < 4.0.6-1~deb12u1 | 4.0.6-1~deb12u1 |
| wireshark | wireshark | >= 0 < 4.0.6-1 | 4.0.6-1 |
| wireshark | wireshark | >= 0 < 4.0.6-1 | 4.0.6-1 |
| wireshark | wireshark | >= 3.6.0 < 3.6.14 | 3.6.14 |
| wireshark | wireshark | >= 4.0.0 < 4.0.6 | 4.0.6 |
| wireshark_foundation | wireshark | 3.6.0 – 3.6.13 | — |
| wireshark_foundation | wireshark | 4.0.0 – 4.0.5 | — |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2023-0668: Due to failure in validating the length provided by an attacker-crafted IEEE-C37
osv·2023-06-07·CVSS 6.5
CVE-2023-0668 [MEDIUM] CVE-2023-0668: Due to failure in validating the length provided by an attacker-crafted IEEE-C37
Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and prior, by default, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark.
GHSA
GHSA-4794-8fm9-wmp3: Due to failure in validating the length provided by an attacker-crafted IEEE-C37
ghsa_unreviewed·2023-06-07
CVE-2023-0668 [MEDIUM] CWE-125 GHSA-4794-8fm9-wmp3: Due to failure in validating the length provided by an attacker-crafted IEEE-C37
Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and prior, by default, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark.
Red Hat
wireshark: IEEE C37.118 Synchrophasor dissector crash
vendor_redhat·2023-05-18·CVSS 6.5
CVE-2023-0668 [MEDIUM] CWE-125 wireshark: IEEE C37.118 Synchrophasor dissector crash
wireshark: IEEE C37.118 Synchrophasor dissector crash
Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and prior, by default, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark.
A flaw was found in the IEEE C37.118 Synchrophasor dissector of Wireshark. This issue occurs when decoding malformed packets from a pcap file or from the network, causing a buffer overflow, resulting in a denial of service.
Statement: Wireshark as shipped in Red Hat Enterprise Linux 8 is not affected by this vulnerability because the vulnerable code in the IEEE C37.118 Synchrophasor dissector was introduced in a newer Wireshark version.
Package: wireshark (Red Hat Enterpri
Debian
CVE-2023-0668: wireshark - Due to failure in validating the length provided by an attacker-crafted IEEE-C37...
vendor_debian·2023·CVSS 6.5
CVE-2023-0668 [MEDIUM] CVE-2023-0668: wireshark - Due to failure in validating the length provided by an attacker-crafted IEEE-C37...
Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and prior, by default, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark.
Scope: local
bookworm: resolved (fixed in 4.0.6-1~deb12u1)
bullseye: resolved (fixed in 3.4.16-0+deb11u1)
forky: resolved (fixed in 4.0.6-1)
sid: resolved (fixed in 4.0.6-1)
trixie: resolved (fixed in 4.0.6-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://gitlab.com/wireshark/wireshark/-/issues/19087https://security.gentoo.org/glsa/202309-02https://takeonme.org/cves/CVE-2023-0668.htmlhttps://www.debian.org/security/2023/dsa-5429https://www.wireshark.org/docs/relnotes/wireshark-4.0.6.htmlhttps://www.wireshark.org/security/wnpa-sec-2023-19.htmlhttps://gitlab.com/wireshark/wireshark/-/issues/19087https://lists.debian.org/debian-lts-announce/2024/09/msg00049.htmlhttps://security.gentoo.org/glsa/202309-02https://takeonme.org/cves/CVE-2023-0668.htmlhttps://www.debian.org/security/2023/dsa-5429https://www.wireshark.org/docs/relnotes/wireshark-4.0.6.htmlhttps://www.wireshark.org/security/wnpa-sec-2023-19.html
2023-06-07
Published