Denial of service vulnerability in Wireshark - wnpa-sec-2021-20 (Mac OS)ID: oval:org.secpod.oval:def:76888 | Date: (C)2022-01-03 (M)2023-12-02 |
Class: PATCH | Family: macos |
The host is missing a security update according to Wireshark Advisory. The update is required to fix a denial-of-service vulnerability. A flaw is present in the application, which fails to properly handle the RFC 7468 file parser infinite loop issue. Successful exploitation could allow attackers to make Wireshark consume excessive CPU resources by convincing someone to read a malformed packet trace file.
Platform: |
Apple Mac OS 14 |
Apple Mac OS 13 |
Apple Mac OS X 10.15 |
Apple Mac OS X 10.10 |
Apple Mac OS X 10.11 |
Apple Mac OS X 10.12 |
Apple Mac OS X 10.13 |
Apple Mac OS X 10.14 |
Apple Mac OS 11 |
Apple Mac OS 12 |