CVE-2024-11595
published 2024-11-21CVE-2024-11595: FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file
PriorityP419medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
0.27%
18.6th percentile
FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | wireshark | < wireshark 4.4.2-1 (forky) | wireshark 4.4.2-1 (forky) |
| gitlab | wireshark | — | — |
| wireshark | wireshark | >= 0 < 4.4.2-1 | 4.4.2-1 |
| wireshark | wireshark | >= 0 < 4.4.2-1 | 4.4.2-1 |
| wireshark | wireshark | >= 4.2.0 < 4.2.9 | 4.2.9 |
| wireshark | wireshark | >= 4.4.0 < 4.4.2 | 4.4.2 |
| wireshark_foundation | wireshark | >= 4.2.0 < 4.2.9 | 4.2.9 |
| wireshark_foundation | wireshark | >= 4.4.0 < 4.4.2 | 4.4.2 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian7.8LOW
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GitLab
Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark
vendor_gitlab·2024-11-21·CVSS 5.5
CVE-2024-11595 [MEDIUM] CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark
Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark
FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file
Affected products: Wireshark
Affected versions: >=4.4.0, =4.2.0, <4.2.9 (affected)
Solution: Upgrade to version 4.4.2, 4.2.9 or above.
Red Hat
wireshark: Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark
vendor_redhat·2024-11-21·CVSS 7.8
CVE-2024-11595 [HIGH] CWE-835 wireshark: Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark
wireshark: Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark
FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file
A flaw was found in Wireshark's FiveCo RAP dissector. This issue occurs when malformed packets are decoded from a pcap file or the network, causing an infinite loop and excessive consumption of CPU resources, resulting in a denial of service.
Statement: This vulnerability will cause a crash in Wireshark with no other security impact. For this reason, this flaw has been rated with a moderate severity.
Additionally, Wireshark as shipped in Red Hat Enterprise Linux 8 and 9 is not affected by this vulnerability because the FiveCo RAP protocol dissector was added i
Debian
CVE-2024-11595: wireshark - FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2....
vendor_debian·2024·CVSS 7.8
CVE-2024-11595 [HIGH] CVE-2024-11595: wireshark - FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2....
FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 4.4.2-1)
sid: resolved (fixed in 4.4.2-1)
trixie: resolved (fixed in 4.4.2-1)
GHSA
GHSA-22gx-4xv7-xwjg: FiveCo RAP dissector infinite loop in Wireshark 4
ghsa_unreviewed·2025-05-07
CVE-2024-11595 [MEDIUM] CWE-835 GHSA-22gx-4xv7-xwjg: FiveCo RAP dissector infinite loop in Wireshark 4
FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file
OSV
CVE-2024-11595: FiveCo RAP dissector infinite loop in Wireshark 4
osv·2024-11-21·CVSS 5.5
CVE-2024-11595 [MEDIUM] CVE-2024-11595: FiveCo RAP dissector infinite loop in Wireshark 4
FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-11-21
Published