CVE-2023-0414: Medium severity wireshark vulnerability
Crash in the EAP dissector in Wireshark 4.0.0 to 4.0.2 allows denial of service via packet injection or crafted capture file
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2023-0414?
CVE-2023-0414 is a vulnerability in Wireshark 4.0.0 to 4.0.2 that allows denial of service via packet injection or crafted capture file.
How severe is CVE-2023-0414?
The severity of CVE-2023-0414 is medium with a severity value of 6.5.
Which software versions are affected by CVE-2023-0414?
Versions 4.0.0 to 4.0.2 of Wireshark are affected by CVE-2023-0414.
How can CVE-2023-0414 be exploited?
CVE-2023-0414 can be exploited by performing packet injection or using a crafted capture file.
Where can I find more information about CVE-2023-0414?
More information about CVE-2023-0414 can be found at the following references: [Reference 1](https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0414.json), [Reference 2](https://gitlab.com/wireshark/wireshark/-/issues/18622), [Reference 3](https://www.wireshark.org/security/wnpa-sec-2023-01.html).