Memory exhaustion in the Kafka protocol dissector in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allows denial of service via packet injection or crafted capture file
2023-01-12T00:15:08.797
2025-11-03T22:16:01.670
Modified
CVSSv3.1: 6.3 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | wireshark | wireshark | < 3.6.10 | Yes |
| Application | wireshark | wireshark | < 4.0.2 | Yes |