CVE-2024-4853Mismatched Memory Management Routines in Foundation Editcap

Severity
5.5MEDIUMNVD
CNA3.6
EPSS
0.1%
top 81.06%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 14

Description

Memory handling issue in editcap could cause denial of service via crafted capture file

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages3 packages

CVEListV5wireshark_foundation/editcap4.2.04.2.5+2
NVDwireshark/wireshark3.6.03.6.23+2
Debianwireshark/wireshark< 3.4.16-0+deb11u1+3

Also affects: Fedora 39, 40

🔴Vulnerability Details

3
CVEList
Mismatched Memory Management Routines in editcap2024-05-14
GHSA
GHSA-7xxh-v6v3-qwgx: Memory handling issue in editcap could cause denial of service via crafted capture file2024-05-14
OSV
CVE-2024-4853: Memory handling issue in editcap could cause denial of service via crafted capture file2024-05-14

📋Vendor Advisories

3
Red Hat
wireshark: Editcap byte chopping crash2024-05-14
Microsoft
Mismatched Memory Management Routines in editcap2024-05-14
Debian
CVE-2024-4853: wireshark - Memory handling issue in editcap could cause denial of service via crafted captu...2024
CVE-2024-4853 — Mismatched Memory Management Routines | cvebase