CVE-2023-1992
published 2023-04-12CVE-2023-1992: RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
PriorityP340high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
4.62%
90.7th percentile
RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | wireshark | < wireshark 4.0.6-1~deb12u1 (bookworm) | wireshark 4.0.6-1~deb12u1 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| wireshark | wireshark | >= 0 < 3.4.16-0+deb11u1 | 3.4.16-0+deb11u1 |
| wireshark | wireshark | >= 0 < 4.0.6-1~deb12u1 | 4.0.6-1~deb12u1 |
| wireshark | wireshark | >= 0 < 4.0.6-1 | 4.0.6-1 |
| wireshark | wireshark | >= 0 < 4.0.6-1 | 4.0.6-1 |
| wireshark | wireshark | >= 3.6.0 < 3.6.13 | 3.6.13 |
| wireshark | wireshark | >= 4.0.0 < 4.0.5 | 4.0.5 |
| wireshark_foundation | wireshark | — | — |
| wireshark_foundation | wireshark | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_debian6.3MEDIUM
vendor_redhat6.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-j3hh-fx42-vqq9: RPCoRDMA dissector crash in Wireshark 4
ghsa_unreviewed·2023-04-12
CVE-2023-1992 [HIGH] CWE-400 GHSA-j3hh-fx42-vqq9: RPCoRDMA dissector crash in Wireshark 4
RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
OSV
CVE-2023-1992: RPCoRDMA dissector crash in Wireshark 4
osv·2023-04-12·CVSS 7.5
CVE-2023-1992 [HIGH] CVE-2023-1992: RPCoRDMA dissector crash in Wireshark 4
RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
Red Hat
kernel: scsi: qla2xxx: Use raw_smp_processor_id() instead of smp_processor_id()
vendor_redhat·2025-10-01·CVSS 5.5
CVE-2023-53530 [MEDIUM] CWE-663 kernel: scsi: qla2xxx: Use raw_smp_processor_id() instead of smp_processor_id()
kernel: scsi: qla2xxx: Use raw_smp_processor_id() instead of smp_processor_id()
In the Linux kernel, the following vulnerability has been resolved:
scsi: qla2xxx: Use raw_smp_processor_id() instead of smp_processor_id()
The following call trace was observed:
localhost kernel: nvme nvme0: NVME-FC{0}: controller connect complete
localhost kernel: BUG: using smp_processor_id() in preemptible [00000000] code: kworker/u129:4/75092
localhost kernel: nvme nvme0: NVME-FC{0}: new ctrl: NQN "nqn.1992-08.com.netapp:sn.b42d198afb4d11ecad6d00a098d6abfa:subsystem.PR_Channel2022_RH84_subsystem_291"
localhost kernel: caller is qla_nvme_post_cmd+0x216/0x1380 [qla2xxx]
localhost kernel: CPU: 6 PID: 75092 Comm: kworker/u129:4 Kdump: loaded Tainted: G B W OE --------- --- 5.14.0-70.22.1.el9_0.x86_64+debug #1
Red Hat
wireshark: RPCoRDMA dissector crash
vendor_redhat·2023-04-12·CVSS 6.3
CVE-2023-1992 [MEDIUM] CWE-20 wireshark: RPCoRDMA dissector crash
wireshark: RPCoRDMA dissector crash
RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
Package: wireshark (Red Hat Enterprise Linux 6) - Out of support scope
Package: wireshark (Red Hat Enterprise Linux 7) - Out of support scope
Package: wireshark (Red Hat Enterprise Linux 8) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 9) - Fix deferred
Debian
CVE-2023-1992: wireshark - RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows ...
vendor_debian·2023·CVSS 6.3
CVE-2023-1992 [MEDIUM] CVE-2023-1992: wireshark - RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows ...
RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
Scope: local
bookworm: resolved (fixed in 4.0.6-1~deb12u1)
bullseye: resolved (fixed in 3.4.16-0+deb11u1)
forky: resolved (fixed in 4.0.6-1)
sid: resolved (fixed in 4.0.6-1)
trixie: resolved (fixed in 4.0.6-1)
No detection rules found.
No public exploits indexed.
https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-1992.jsonhttps://gitlab.com/wireshark/wireshark/-/issues/18852https://lists.debian.org/debian-lts-announce/2023/04/msg00029.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EHLTD25WNQSPQNELX52UH6YLP4TBLKTT/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FZA7IMATNNQPLIM6WMRPM3T5ZY24NRR2/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PFJERBHVWYLYWXO2B3V47QH66IEB6EZ3/https://security.gentoo.org/glsa/202309-02https://www.debian.org/security/2023/dsa-5429https://www.wireshark.org/security/wnpa-sec-2023-09.htmlhttps://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-1992.jsonhttps://gitlab.com/wireshark/wireshark/-/issues/18852https://lists.debian.org/debian-lts-announce/2023/04/msg00029.htmlhttps://lists.debian.org/debian-lts-announce/2024/09/msg00049.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EHLTD25WNQSPQNELX52UH6YLP4TBLKTT/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FZA7IMATNNQPLIM6WMRPM3T5ZY24NRR2/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PFJERBHVWYLYWXO2B3V47QH66IEB6EZ3/https://security.gentoo.org/glsa/202309-02https://www.debian.org/security/2023/dsa-5429https://www.wireshark.org/security/wnpa-sec-2023-09.html
2023-04-12
Published