CVE-2023-2855: Medium severity wireshark vulnerability
Candump log parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2023-2855?
CVE-2023-2855 is a vulnerability that allows a denial of service attack via a crafted capture file in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13.
What software is affected by CVE-2023-2855?
Wireshark versions 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 are affected by CVE-2023-2855.
What is the severity of CVE-2023-2855?
CVE-2023-2855 has a severity rating of 6.5 (medium).
How can I fix CVE-2023-2855?
To fix CVE-2023-2855, update to Wireshark version 4.0.6 or newer.
Is there any additional information about CVE-2023-2855?
Yes, you can find more information about CVE-2023-2855 in the references provided: [GitLab](https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2855.json), [Wireshark Issue](https://gitlab.com/wireshark/wireshark/-/issues/19062), [Wireshark Security Advisory](https://www.wireshark.org/security/wnpa-sec-2023-12.html).