CVE-2024-8250
published 2024-08-29CVE-2024-8250: NTLMSSP dissector crash in Wireshark 4.2.0 to 4.0.6 and 4.0.0 to 4.0.16 allows denial of service via packet injection or crafted capture file
PriorityP419medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
0.32%
24.0th percentile
NTLMSSP dissector crash in Wireshark 4.2.0 to 4.0.6 and 4.0.0 to 4.0.16 allows denial of service via packet injection or crafted capture file
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | wireshark | < wireshark 4.0.17-0+deb12u1 (bookworm) | wireshark 4.0.17-0+deb12u1 (bookworm) |
| gitlab | wireshark | — | — |
| msrc | azl3_wireshark_4.4.7-1_on_azure_linux_3.0 | — | — |
| wireshark | wireshark | >= 0 < 3.4.16-0+deb11u1 | 3.4.16-0+deb11u1 |
| wireshark | wireshark | >= 0 < 4.0.17-0+deb12u1 | 4.0.17-0+deb12u1 |
| wireshark | wireshark | >= 0 < 4.4.0-1 | 4.4.0-1 |
| wireshark | wireshark | >= 0 < 4.4.0-1 | 4.4.0-1 |
| wireshark | wireshark | >= 4.0.0 < 4.0.17 | 4.0.17 |
| wireshark | wireshark | >= 4.2.0 < 4.2.7 | 4.2.7 |
| wireshark_foundation | wireshark | >= 4.0.0 < 4.0.17 | 4.0.17 |
| wireshark_foundation | wireshark | >= 4.2.0 < 4.2.7 | 4.2.7 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-4xqj-427q-hf6q: NTLMSSP dissector crash in Wireshark 4
ghsa_unreviewed·2024-08-29
CVE-2024-8250 [HIGH] CWE-787 GHSA-4xqj-427q-hf6q: NTLMSSP dissector crash in Wireshark 4
NTLMSSP dissector crash in Wireshark 4.2.0 to 4.0.6 and 4.0.0 to 4.0.16 allows denial of service via packet injection or crafted capture file
OSV
CVE-2024-8250: NTLMSSP dissector crash in Wireshark 4
osv·2024-08-29·CVSS 5.5
CVE-2024-8250 [MEDIUM] CVE-2024-8250: NTLMSSP dissector crash in Wireshark 4
NTLMSSP dissector crash in Wireshark 4.2.0 to 4.0.6 and 4.0.0 to 4.0.16 allows denial of service via packet injection or crafted capture file
Red Hat
kernel: Revert "serial: 8250_omap: Set the console genpd always on if no console suspend"
vendor_redhat·2024-09-13·CVSS 5.5
CVE-2024-46703 [MEDIUM] CWE-99 kernel: Revert "serial: 8250_omap: Set the console genpd always on if no console suspend"
kernel: Revert "serial: 8250_omap: Set the console genpd always on if no console suspend"
In the Linux kernel, the following vulnerability has been resolved:
Revert "serial: 8250_omap: Set the console genpd always on if no console suspend"
This reverts commit 68e6939ea9ec3d6579eadeab16060339cdeaf940.
Kevin reported that this causes a crash during suspend on platforms that
dont use PM domains.
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise Linux 9) - Not affected
Package: kernel-rt (Red Hat En
Red Hat
wireshark: NTLMSSP dissector crash
vendor_redhat·2024-08-29·CVSS 7.8
CVE-2024-8250 [HIGH] CWE-825 wireshark: NTLMSSP dissector crash
wireshark: NTLMSSP dissector crash
NTLMSSP dissector crash in Wireshark 4.2.0 to 4.0.6 and 4.0.0 to 4.0.16 allows denial of service via packet injection or crafted capture file
A flaw was found in wireshark. Affected versions of wireshark allow denial of service via packet injection or crafted capture file. It may be possible to cause Wireshark to crash by injecting a malformed packet onto the wire or convincing someone to read a malformed packet trace file.
Statement: This issue does not affect Red Hat Enterprise Linux 6, 7, 8 and 9 as the affected version of wireshark package is currently not provided in any of our supported products.
Mitigation: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comp
GitLab
Expired Pointer Dereference in Wireshark
vendor_gitlab·2024-08-28·CVSS 5.5
CVE-2024-8250 [MEDIUM] CWE-825 Expired Pointer Dereference in Wireshark
Expired Pointer Dereference in Wireshark
NTLMSSP dissector crash in Wireshark 4.2.0 to 4.0.6 and 4.0.0 to 4.0.16 allows denial of service via packet injection or crafted capture file
Affected products: Wireshark
Affected versions: >=4.2.0, =4.0.0, <4.0.17 (affected)
Solution: Upgrade to versions 4.2.7 or above.
Microsoft
Expired Pointer Dereference in Wireshark
vendor_msrc·2024-08-13·CVSS 7.8
CVE-2024-8250 [HIGH] CWE-825 Expired Pointer Dereference in Wireshark
Expired Pointer Dereference in Wireshark
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
GitLab: GitLab
Customer Action Required: Yes
Remediation: CBL-Mariner Releases
Reference: https://learn.microsoft.co
Red Hat
kernel: serial: 8250_omap: Implementation of Errata i2310
vendor_redhat·2024-07-29·CVSS 5.5
CVE-2024-42095 [MEDIUM] CWE-432 kernel: serial: 8250_omap: Implementation of Errata i2310
kernel: serial: 8250_omap: Implementation of Errata i2310
In the Linux kernel, the following vulnerability has been resolved:
serial: 8250_omap: Implementation of Errata i2310
As per Errata i2310[0], Erroneous timeout can be triggered,
if this Erroneous interrupt is not cleared then it may leads
to storm of interrupts, therefore apply Errata i2310 solution.
[0] https://www.ti.com/lit/pdf/sprz536 page 23
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise Linux 9) - Not affected
Package: kernel-rt
Debian
CVE-2024-8250: wireshark - NTLMSSP dissector crash in Wireshark 4.2.0 to 4.0.6 and 4.0.0 to 4.0.16 allows d...
vendor_debian·2024·CVSS 7.8
CVE-2024-8250 [HIGH] CVE-2024-8250: wireshark - NTLMSSP dissector crash in Wireshark 4.2.0 to 4.0.6 and 4.0.0 to 4.0.16 allows d...
NTLMSSP dissector crash in Wireshark 4.2.0 to 4.0.6 and 4.0.0 to 4.0.16 allows denial of service via packet injection or crafted capture file
Scope: local
bookworm: resolved (fixed in 4.0.17-0+deb12u1)
bullseye: resolved (fixed in 3.4.16-0+deb11u1)
forky: resolved (fixed in 4.4.0-1)
sid: resolved (fixed in 4.4.0-1)
trixie: resolved (fixed in 4.4.0-1)
No detection rules found.
No public exploits indexed.
2024-08-29
Published