CVE-2024-4854

Source
https://cve.org/CVERecord?id=CVE-2024-4854
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-4854.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-4854
Downstream
Related
Published
2024-05-14T00:03:12.486Z
Modified
2026-05-15T11:54:06.658309339Z
Severity
  • 6.4 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:H CVSS Calculator
Summary
Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark
Details

MONGO and ZigBee TLV dissector infinite loops in Wireshark 4.2.0 to 4.2.4, 4.0.0 to 4.0.14, and 3.6.0 to 3.6.22 allow denial of service via packet injection or crafted capture file

Database specific
{
    "cwe_ids": [
        "CWE-835"
    ],
    "cna_assigner": "GitLab",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/4xxx/CVE-2024-4854.json"
}
References

Affected packages