First published: Thu Oct 10 2024(Updated: )
ITS dissector crash in Wireshark 4.4.0 allows denial of service via packet injection or crafted capture file
Credit: cve@gitlab.com
Affected Software | Affected Version | How to fix |
---|---|---|
Wireshark Wireshark | =4.4.0 |
Upgrade to version 4.4.1 or above.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-9780 is categorized as a denial of service vulnerability due to a crash in the ITS dissector.
To fix CVE-2024-9780, upgrade to Wireshark version 4.4.1 or later.
CVE-2024-9780 is caused by a crash in Wireshark's ITS dissector when processing crafted packets or capture files.
Yes, CVE-2024-9780 can be exploited remotely through packet injection or by using crafted capture files.
CVE-2024-9780 specifically affects Wireshark version 4.4.0.