CVE-2021-4184: High severity wireshark vulnerability
Infinite loop in the BitTorrent DHT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-4184?
CVE-2021-4184 is an infinite loop vulnerability in the BitTorrent DHT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 that allows denial of service through packet injection or crafted capture file.
How does CVE-2021-4184 impact Wireshark?
CVE-2021-4184 allows an attacker to cause a denial of service in Wireshark by injecting malicious packets or providing a crafted capture file that triggers an infinite loop in the BitTorrent DHT dissector.
What is the severity of CVE-2021-4184?
CVE-2021-4184 has a severity rating of high, with a CVSS score of 7.5.
Which software versions are affected by CVE-2021-4184?
Wireshark versions 3.6.0 and 3.4.0 to 3.4.10 are affected by CVE-2021-4184.
How can I fix the CVE-2021-4184 vulnerability?
To fix the CVE-2021-4184 vulnerability, it is recommended to update to a patched version of Wireshark (3.4.11 or later for 3.4.x branch, or 3.6.1 or later for 3.6.x branch).