First published: Fri Aug 25 2023(Updated: )
Due to a failure in validating the length provided by an attacker-crafted CP2179 packet, Wireshark versions 2.0.0 through 4.0.7 is susceptible to a divide by zero allowing for a denial of service attack.
Credit: cve@takeonme.org cve@takeonme.org
Affected Software | Affected Version | How to fix |
---|---|---|
Wireshark Wireshark | >=2.0.0<=4.0.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Wireshark vulnerability is CVE-2023-2906.
The severity of CVE-2023-2906 is medium with a severity value of 6.5.
CVE-2023-2906 affects Wireshark versions 2.0.0 through 4.0.7.
The impact of CVE-2023-2906 is a divide by zero vulnerability that allows for a denial of service attack.
To fix CVE-2023-2906, it is recommended to update to a patched version of Wireshark.