CVE-2025-1492: Uncontrolled Recursion in Wireshark
Published Feb 20, 2025
·Updated
Bundle Protocol and CBOR dissector crashes in Wireshark 4.4.0 to 4.4.3 and 4.2.0 to 4.2.10 allows denial of service via packet injection or crafted capture file
Affected Software
1 affected component
Wireshark Wireshark>=4.4.0<4.4.3, >=4.2.0<4.2.10
Remediation
Information
Upgrade to version 4.4.4, 4.2.11 or above.
Event History
Feb 20, 2025
CVE Published
via MITRE·01:30 AM
Data Sourced
via MITRE·01:30 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-1492?
CVE-2025-1492 is classified as a denial of service vulnerability that affects specific versions of Wireshark.
2
How do I fix CVE-2025-1492?
To fix CVE-2025-1492, upgrade Wireshark to a version later than 4.4.3 or 4.2.10.
3
What versions of Wireshark are affected by CVE-2025-1492?
CVE-2025-1492 affects Wireshark versions 4.4.0 to 4.4.3 and 4.2.0 to 4.2.10.
4
What kind of attacks does CVE-2025-1492 allow?
CVE-2025-1492 allows denial of service attacks via packet injection or using crafted capture files.
5
Is CVE-2025-1492 exploitable remotely?
Yes, CVE-2025-1492 can be exploited remotely if an attacker can send crafted packets to a vulnerable Wireshark installation.