CVE-2023-0417: Medium severity wireshark vulnerability
Memory leak in the NFS dissector in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2023-0417?
The severity of CVE-2023-0417 is medium with a severity value of 6.5.
How does CVE-2023-0417 affect Wireshark?
CVE-2023-0417 affects Wireshark versions 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10.
How can CVE-2023-0417 be exploited?
CVE-2023-0417 can be exploited through packet injection or a crafted capture file.
How can I fix CVE-2023-0417?
To fix CVE-2023-0417, update to a version of Wireshark that is not affected by this vulnerability.
Where can I find more information about CVE-2023-0417?
You can find more information about CVE-2023-0417 in the references provided: [link 1](https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0417.json), [link 2](https://gitlab.com/wireshark/wireshark/-/issues/18628), [link 3](https://lists.debian.org/debian-lts-announce/2023/02/msg00007.html).