Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-4344


Memory exhaustion in the Kafka protocol dissector in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allows denial of service via packet injection or crafted capture file


Published

2023-01-12T00:15:08.797

Last Modified

2025-04-08T20:15:17.753

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.3 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-400
  • Type: Secondary
    CWE-400

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application wireshark wireshark < 3.6.10 Yes
Application wireshark wireshark < 4.0.2 Yes

References