CVE-2023-4511
published 2023-08-24CVE-2023-4511: BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file
PriorityP335high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.44%
35.5th percentile
BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| craftcms | cms | >= 3.0.0 < 3.9.6 | 3.9.6 |
| craftcms | cms | >= 4.0.0-RC1 < 4.5.11 | 4.5.11 |
| debian | wireshark | < wireshark 4.0.11-1~deb12u1 (bookworm) | wireshark 4.0.11-1~deb12u1 (bookworm) |
| gitlab | wireshark | — | — |
| wireshark | wireshark | >= 0 < 3.4.16-0+deb11u1 | 3.4.16-0+deb11u1 |
| wireshark | wireshark | >= 0 < 4.0.11-1~deb12u1 | 4.0.11-1~deb12u1 |
| wireshark | wireshark | >= 0 < 4.0.8-1 | 4.0.8-1 |
| wireshark | wireshark | >= 0 < 4.0.8-1 | 4.0.8-1 |
| wireshark | wireshark | 3.6.0 – 3.6.15 | — |
| wireshark | wireshark | 4.0.0 – 4.0.7 | — |
| wireshark_foundation | wireshark | >= 3.6.0 < 3.6.16 | 3.6.16 |
| wireshark_foundation | wireshark | >= 4.0.0 < 4.0.8 | 4.0.8 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_debian5.3MEDIUM
vendor_redhat5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
Craft CMS Privilege Escalation
ghsa·2024-01-03
CVE-2024-21622 [MEDIUM] CWE-269 Craft CMS Privilege Escalation
Craft CMS Privilege Escalation
### Impact
This is a potential moderate impact, low complexity privilege escalation vulnerability in Craft with certain user permissions setups.
### Patches
This has been fixed in Craft 4.4.16 and Craft 3.9.6. Users should ensure they are running at least those versions.
### References
https://github.com/craftcms/cms/pull/13932
https://github.com/craftcms/cms/pull/13931
https://github.com/craftcms/cms/blob/develop/CHANGELOG.md#4511---2023-11-16
https://github.com/craftcms/cms/blob/v3/CHANGELOG.md#396---2023-11-16
GHSA
GHSA-2rw7-4xg9-x3cw: BT SDP dissector infinite loop in Wireshark 4
ghsa_unreviewed·2023-08-24
CVE-2023-4511 [HIGH] CWE-835 GHSA-2rw7-4xg9-x3cw: BT SDP dissector infinite loop in Wireshark 4
BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file
OSV
CVE-2023-4511: BT SDP dissector infinite loop in Wireshark 4
osv·2023-08-24·CVSS 7.5
CVE-2023-4511 [HIGH] CVE-2023-4511: BT SDP dissector infinite loop in Wireshark 4
BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file
Red Hat
wireshark: DoS (infinite loop) via packet injection or crafted capture file
vendor_redhat·2023-08-24·CVSS 5.3
CVE-2023-4511 [MEDIUM] CWE-835 wireshark: DoS (infinite loop) via packet injection or crafted capture file
wireshark: DoS (infinite loop) via packet injection or crafted capture file
BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file
A denial of service vulnerability was found in Wireshark due to an infinite loop in the Bluetooth (BT) SDP dissector. Exploiting this flaw involves injecting a malformed packet onto the wire or enticing a victim to read a corrupted packet trace file, resulting in a crash of the BT SDP dissector. This issue may allow a remote attacker to perform a DoS attack by consuming all available system resources, leading to excessive CPU resource consumption.
Package: wireshark (Red Hat Enterprise Linux 6) - Out of support scope
Package: wireshark (Red Hat Enterprise Linux 7)
GitLab
Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark
vendor_gitlab·2023-08-24·CVSS 7.5
CVE-2023-4511 [HIGH] CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark
Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark
BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file
Affected products: Wireshark
Affected versions: >=4.0.0, =3.6.0, <3.6.16 (affected)
Solution: Upgrade to version 4.0.8, 3.6.16 or above.
Credit: Chenyuan Mi
Debian
CVE-2023-4511: wireshark - BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 a...
vendor_debian·2023·CVSS 5.3
CVE-2023-4511 [MEDIUM] CVE-2023-4511: wireshark - BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 a...
BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file
Scope: local
bookworm: resolved (fixed in 4.0.11-1~deb12u1)
bullseye: resolved (fixed in 3.4.16-0+deb11u1)
forky: resolved (fixed in 4.0.8-1)
sid: resolved (fixed in 4.0.8-1)
trixie: resolved (fixed in 4.0.8-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://gitlab.com/wireshark/wireshark/-/issues/19258https://www.wireshark.org/security/wnpa-sec-2023-24.htmlhttps://gitlab.com/wireshark/wireshark/-/issues/19258https://lists.debian.org/debian-lts-announce/2024/02/msg00016.htmlhttps://lists.debian.org/debian-lts-announce/2024/09/msg00049.htmlhttps://lists.fedoraproject.org/archives/list/[email protected]/message/6HCUPLDY7HLPO46PHMGIJSUBJFTT237C/https://lists.fedoraproject.org/archives/list/[email protected]/message/L4AVRUYSHDNEAJILVSGY5W6MPOMG2YRF/https://lists.fedoraproject.org/archives/list/[email protected]/message/TRKHFQPWFU7F3OXTL6IEIQSJG6FVXZTZ/https://www.wireshark.org/security/wnpa-sec-2023-24.html
2023-08-24
Published