CVE-2024-11595

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-11595
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-11595.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-11595
Downstream
Related
Published
2024-11-21T09:30:54.899Z
Modified
2025-12-11T02:06:34.697094Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
Summary
Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark
Details

FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file

Database specific
{
    "cna_assigner": "GitLab",
    "cwe_ids": [
        "CWE-835"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/11xxx/CVE-2024-11595.json"
}
References

Affected packages

Git / github.com/wireshark/wireshark

Affected ranges

Type
GIT
Repo
https://github.com/wireshark/wireshark
Events

Affected versions

v4.*

v4.2.0
v4.2.1
v4.2.1rc0
v4.2.2
v4.2.2rc0
v4.2.3
v4.2.3rc0
v4.2.4
v4.2.4rc0
v4.2.5
v4.2.5rc0
v4.2.6
v4.2.6rc0
v4.2.7
v4.2.7rc0
v4.2.8
v4.2.8rc0
v4.2.9rc0

wireshark-4.*

wireshark-4.2.0
wireshark-4.2.1
wireshark-4.2.2
wireshark-4.2.3
wireshark-4.2.4
wireshark-4.2.5
wireshark-4.2.6
wireshark-4.2.7
wireshark-4.2.8

Git / gitlab.com/wireshark/wireshark

Affected ranges

Type
GIT
Repo
https://gitlab.com/wireshark/wireshark
Events

Affected versions

v4.*

v4.4.0
v4.4.1
v4.4.1rc0
v4.4.2rc0

wireshark-4.*

wireshark-4.4.0
wireshark-4.4.1