7.5
CVSSv3

CVE-2021-22235

Published: 20/07/2021 Updated: 03/11/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Crash in DNP dissector in Wireshark 3.4.0 to 3.4.6 and 3.2.0 to 3.2.14 allows denial of service via packet injection or crafted capture file

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

wireshark wireshark

debian debian linux 9.0

debian debian linux 10.0

debian debian linux 11.0

Vendor Advisories

Multiple vulnerabilities have been discovered in Wireshark, a network protocol analyzer which could result in denial of service or the execution of arbitrary code For the oldstable distribution (buster), CVE-2021-39925 has been fixed in in version 2620-0+deb10u2 For the stable distribution (bullseye), these problems have been fixed in version 3 ...
It may be possible to make Wireshark before version 347 crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file ...