AI description
CVE-2025-5601 affects Wireshark versions 4.4.0 through 4.4.6 and 4.2.0 through 4.2.12. It is a denial-of-service vulnerability stemming from improper handling of columns. An attacker can trigger this vulnerability by injecting malicious packets or by enticing a user to open a specially crafted capture file. This can lead to application crashes and service interruption.
- Description
- Column handling crashes in Wireshark 4.4.0 to 4.4.6 and 4.2.0 to 4.2.12 allows denial of service via packet injection or crafted capture file
- Source
- cve@gitlab.com
- NVD status
- Analyzed
- Products
- wireshark
CVSS 3.1
- Type
- Primary
- Base score
- 7.5
- Impact score
- 3.6
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- Severity
- HIGH
- Hype score
- Not currently trending
何かあったんだな…と思いながら あまり深く考えず更新していたけど、 今更ながら調べてみたら…こういう脆弱性に気付く人 すごくね? Wireshark の脆弱性 CVE-2025-5601 が FIX:悪意のパケット・インジェクショ
@CUI_Commander
25 Jul 2025
34 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
⚠️ CVE-2025-5601: Wireshark dissection engine crash patched by @SUSE (CVSS 7.8). Impacts SLE 15 SP6/SP7, openSUSE Leap. ▶️ Patch via zypper or YaST. Details:👉 https://t.co/yJxA4mD9so #InfoSec #SysAdmin https://t.co/OjHs3uRylM
@Cezar_H_Linux
17 Jun 2025
7 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
⚠️Vulnerabilidad encontrada en Wireshark ❗CVE-2025-5601 ➡️Más info: https://t.co/VhrsuEMOKp https://t.co/yRg0xA8MGC
@CERTpy
11 Jun 2025
150 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-5601 (CVSS:7.8, HIGH) is Awaiting Analysis. Column handling crashes in Wireshark 4.4.0 to 4.4.6 and 4.2.0 to 4.2.12 allows denial of service via packet injection or..https://t.co/5J1xYF5woY #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre
@cracbot
9 Jun 2025
16 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
2025年6月4日、Wiresharkの重大な脆弱性CVE-2025-5601が公開された。列ユーティリティモジュールの不具合により、細工されたパケットやキャプチャファイルを処理することでDoS(サービス拒否)を引き起こす可能性
@yousukezan
5 Jun 2025
4881 Impressions
16 Retweets
47 Likes
14 Bookmarks
0 Replies
1 Quote
Wireshark4.4.7がリリースされました。主な変更はCVE-2025-5601のダイセクタのクラッシュ、パケットダイアグラムでビット位置の誤り、WobSocketにおいて2番目のメッセージが展開できない、Luaダイセクタ、CIGI、ZigBee
@ikeriri
5 Jun 2025
1473 Impressions
13 Retweets
31 Likes
4 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2F55A913-42A9-4C46-83A1-78E4A62294A8",
"versionEndExcluding": "4.2.12",
"versionStartIncluding": "4.2.0"
},
{
"criteria": "cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "98BFCE4F-FC3A-4F46-B660-E0BB1C8D05D8",
"versionEndExcluding": "4.4.7",
"versionStartIncluding": "4.4.0"
}
],
"operator": "OR"
}
]
}
]