CVE-2025-5601: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') in Wireshark
Published Jun 4, 2025
·Updated
Column handling crashes in Wireshark 4.4.0 to 4.4.6 and 4.2.0 to 4.2.12 allows denial of service via packet injection or crafted capture file
Affected Software
3 affected components
Wireshark Wireshark>=4.4.0<=4.4.6, >=4.2.0<=4.2.12
Wireshark Wireshark>=4.2.0<4.2.12
Wireshark Wireshark>=4.4.0<4.4.7
Remediation
Information
Upgrade to version 4.4.7, 4.2.13 or above.
Event History
Jun 4, 2025
CVE Published
via MITRE·10:30 AM
Data Sourced
via MITRE·10:30 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-5601?
CVE-2025-5601 is categorized as a denial of service vulnerability.
2
How do I fix CVE-2025-5601?
To mitigate CVE-2025-5601, upgrade Wireshark to version 4.4.7 or 4.2.13 or later.
3
Which versions of Wireshark are affected by CVE-2025-5601?
CVE-2025-5601 affects Wireshark versions 4.4.0 to 4.4.6 and 4.2.0 to 4.2.12.
4
What type of attacks can exploit CVE-2025-5601?
CVE-2025-5601 can be exploited via packet injection or by using crafted capture files.
5
What symptoms indicate an exploitation of CVE-2025-5601?
Exploitation of CVE-2025-5601 may lead to crashes or unexpected behavior in the Wireshark application.