CVE-2024-0209

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
03/01/2024
Last modified:
03/11/2025

Description

IEEE 1609.2 dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet injection or crafted capture file

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*:* 3.6.0 (including) 3.6.19 (including)
cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*:* 4.0.0 (including) 4.0.11 (including)
cpe:2.3:a:wireshark:wireshark:4.2.0:*:*:*:*:*:*:*