CVE-2023-2906

Source
https://cve.org/CVERecord?id=CVE-2023-2906
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-2906.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-2906
Downstream
Related
Published
2023-08-25T20:41:19.403Z
Modified
2026-06-15T12:20:00.469675161Z
Summary
Wireshark CP2179 divide by zero
Details

Due to a failure in validating the length provided by an attacker-crafted CP2179 packet, Wireshark versions 2.0.0 through 4.0.7 is susceptible to a divide by zero allowing for a denial of service attack.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/2xxx/CVE-2023-2906.json",
    "cna_assigner": "AHA",
    "cwe_ids": [
        "CWE-369"
    ]
}
References

Affected packages

Git / github.com/wireshark/wireshark

Affected ranges

Type
GIT
Repo
https://github.com/wireshark/wireshark
Events
Database specific
{
    "extracted_events": [
        {
            "introduced": "2.0.0"
        },
        {
            "last_affected": "4.0.7"
        }
    ],
    "cpe": "cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*:*",
    "source": "CPE_RANGE"
}
Type
GIT
Repo
https://gitlab.com/wireshark/wireshark
Events
Database specific
{
    "extracted_events": [
        {
            "introduced": "2.0.0"
        },
        {
            "last_affected": "4.0.7"
        },
        {
            "introduced": "2.0.0"
        },
        {
            "last_affected": "4.0.7"
        }
    ],
    "cpe": "cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*:*",
    "source": [
        "AFFECTED_FIELD",
        "CPE_RANGE"
    ]
}

Affected versions

v2.*
v2.0.0
v2.0.1
v2.0.10
v2.0.10rc0
v2.0.11
v2.0.11rc0
v2.0.12
v2.0.12rc0
v2.0.13
v2.0.13rc0
v2.0.14
v2.0.14rc0
v2.0.15
v2.0.15rc0
v2.0.16
v2.0.16rc0
v2.0.17rc0
v2.0.1rc0
v2.0.2
v2.0.2rc0
v2.0.3
v2.0.3rc0
v2.0.4
v2.0.4rc0
v2.0.5
v2.0.5rc0
v2.0.6
v2.0.6rc0
v2.0.7
v2.0.7rc0
v2.0.8
v2.0.8rc0
v2.0.9
v2.0.9rc0
wireshark-2.*
wireshark-2.0.0
wireshark-2.0.1
wireshark-2.0.10
wireshark-2.0.11
wireshark-2.0.12
wireshark-2.0.13
wireshark-2.0.14
wireshark-2.0.15
wireshark-2.0.16
wireshark-2.0.2
wireshark-2.0.3
wireshark-2.0.4
wireshark-2.0.5
wireshark-2.0.6
wireshark-2.0.7
wireshark-2.0.8
wireshark-2.0.9

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-2906.json"