CVE-2025-13674: Access of Uninitialized Pointer in Wireshark
Published Nov 26, 2025
·Updated
BPv7 dissector crash in Wireshark 4.6.0 allows denial of service
Affected Software
2 affected components
Wireshark Wireshark
Wireshark Wireshark=4.6.0
Remediation
Information
Upgrade to version 4.6.1 or above
Event History
Nov 26, 2025
CVE Published
via MITRE·11:33 AM
Data Sourced
via MITRE·11:33 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-13674?
CVE-2025-13674 is classified as a denial of service vulnerability in Wireshark 4.6.0 that can crash the BPv7 dissector.
2
How do I fix CVE-2025-13674?
To fix CVE-2025-13674, update to the latest version of Wireshark that addresses this vulnerability.
3
What software is affected by CVE-2025-13674?
CVE-2025-13674 affects Wireshark version 4.6.0 and may impact earlier versions.
4
What are the implications of CVE-2025-13674?
CVE-2025-13674 can lead to application crashes, causing denial of service and interruption of network analysis.
5
Is there a workaround for CVE-2025-13674?
There is no official workaround for CVE-2025-13674, so updating to a patched version is recommended.