vulnerability
Wireshark : CVE-2023-0668 : IEEE C37.118 Synchrophasor dissector crash
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
7 | (AV:N/AC:M/Au:N/C:N/I:N/A:C) | 06/07/2023 | 09/24/2024 | 01/28/2025 |
Severity
7
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:C)
Published
06/07/2023
Added
09/24/2024
Modified
01/28/2025
Description
Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and prior, by default, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark.
Solution(s)
wireshark-upgrade-3_6_14wireshark-upgrade-4_0_6

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.