← Back

CVE-2024-4854

nvd nist
Published: May 14, 2024Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

MONGO and ZigBee TLV dissector infinite loops in Wireshark 4.2.0 to 4.2.4, 4.0.0 to 4.0.14, and 3.6.0 to 3.6.22 allow denial of service via packet injection or crafted capture file

Affected (5)

1 product
Fedora
1 product
Wireshark
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 39
Version 40
Configuration B
3 vulnerable
Vulnerable SoftwareAffected Versions
Wireshark
From 3.6.0 to 3.6.22
From 4.0.0 to 4.0.14
From 4.2.0 to 4.2.4

Timeline

No history available yet.