CVE-2023-4512
published 2023-08-24CVE-2023-4512: CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file
PriorityP434high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.49%
39.1th percentile
CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | wireshark | < wireshark 4.0.11-1~deb12u1 (bookworm) | wireshark 4.0.11-1~deb12u1 (bookworm) |
| gitlab | wireshark | — | — |
| wireshark | wireshark | >= 0 < 3.4.16-0+deb11u1 | 3.4.16-0+deb11u1 |
| wireshark | wireshark | >= 0 < 4.0.11-1~deb12u1 | 4.0.11-1~deb12u1 |
| wireshark | wireshark | >= 0 < 4.0.8-1 | 4.0.8-1 |
| wireshark | wireshark | >= 0 < 4.0.8-1 | 4.0.8-1 |
| wireshark | wireshark | 4.0.0 – 4.0.7 | — |
| wireshark_foundation | wireshark | >= 4.0.0 < 4.0.8 | 4.0.8 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_debian5.3MEDIUM
vendor_redhat5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-g65w-25m5-5gcg: CBOR dissector crash in Wireshark 4
ghsa_unreviewed·2023-08-24
CVE-2023-4512 [HIGH] CWE-674 GHSA-g65w-25m5-5gcg: CBOR dissector crash in Wireshark 4
CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file
OSV
CVE-2023-4512: CBOR dissector crash in Wireshark 4
osv·2023-08-24·CVSS 7.5
CVE-2023-4512 [HIGH] CVE-2023-4512: CBOR dissector crash in Wireshark 4
CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file
Red Hat
wireshark: DoS (crash) via packet injection or crafted capture file
vendor_redhat·2023-08-24·CVSS 5.3
CVE-2023-4512 [MEDIUM] CWE-674 wireshark: DoS (crash) via packet injection or crafted capture file
wireshark: DoS (crash) via packet injection or crafted capture file
CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file
A denial of service vulnerability was found in Wireshark due to insufficient validation of user-supplied input in the CBOR protocol dissector. This issue could allow a remote attacker to inject a malformed packet onto the wire or persuade someone to read a corrupted packet trace file. The issue manifests as an uncontrolled recursion loop leading to a stack overflow, resulting in Wireshark crashing.
Package: wireshark (Red Hat Enterprise Linux 6) - Out of support scope
Package: wireshark (Red Hat Enterprise Linux 7) - Out of support scope
Package: wireshark (Red Hat Enterprise Linux 8) - Will not fix
GitLab
Uncontrolled Recursion in Wireshark
vendor_gitlab·2023-08-24·CVSS 7.5
CVE-2023-4512 [HIGH] CWE-674 Uncontrolled Recursion in Wireshark
Uncontrolled Recursion in Wireshark
CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file
Affected products: Wireshark
Affected versions: >=4.0.0, <4.0.8 (affected)
Solution: Upgrade to version 4.0.8 or above.
Credit: Simone Di Maria
Debian
CVE-2023-4512: wireshark - CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via pa...
vendor_debian·2023·CVSS 5.3
CVE-2023-4512 [MEDIUM] CVE-2023-4512: wireshark - CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via pa...
CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file
Scope: local
bookworm: resolved (fixed in 4.0.11-1~deb12u1)
bullseye: resolved (fixed in 3.4.16-0+deb11u1)
forky: resolved (fixed in 4.0.8-1)
sid: resolved (fixed in 4.0.8-1)
trixie: resolved (fixed in 4.0.8-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://gitlab.com/wireshark/wireshark/-/issues/19144https://www.wireshark.org/security/wnpa-sec-2023-23.htmlhttps://gitlab.com/wireshark/wireshark/-/issues/19144https://lists.debian.org/debian-lts-announce/2024/09/msg00049.htmlhttps://lists.fedoraproject.org/archives/list/[email protected]/message/6HCUPLDY7HLPO46PHMGIJSUBJFTT237C/https://lists.fedoraproject.org/archives/list/[email protected]/message/L4AVRUYSHDNEAJILVSGY5W6MPOMG2YRF/https://lists.fedoraproject.org/archives/list/[email protected]/message/TRKHFQPWFU7F3OXTL6IEIQSJG6FVXZTZ/https://www.wireshark.org/security/wnpa-sec-2023-23.html
2023-08-24
Published