CVE-2024-9780CWE-456
Missing Initialization of a Variable in Wireshark
High · published October 10, 2024
What it is
ITS dissector crash in Wireshark 4.4.0 allows denial of service via packet injection or crafted capture file
The record
Technical detail
- CVSS v3.1
- 7.8 · HIGH
- Vector
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- CVSS v4.0
- Not supplied
- EPSS
- 0.00244 · 15.6th percentile
- Weakness
- CWE-456 · Missing Initialization of a Variable
- Published
- 2024-10-10T06:30Z
EPSS history
Timeline