CVE-2024-2955

T.38 dissector crash in Wireshark 4.2.0 to 4.0.3 and 4.0.0 to 4.0.13 allows denial of service via packet injection or crafted capture file
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*:*
cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:*

History

06 Aug 2025, 14:52

Type Values Removed Values Added
CWE CWE-763
First Time Wireshark wireshark
Fedoraproject fedora
Wireshark
Fedoraproject
CPE cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:*
References () https://gitlab.com/wireshark/wireshark/-/issues/19695 - () https://gitlab.com/wireshark/wireshark/-/issues/19695 - Exploit, Issue Tracking
References () https://www.wireshark.org/security/wnpa-sec-2024-06.html - () https://www.wireshark.org/security/wnpa-sec-2024-06.html - Vendor Advisory
References () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Q7TWJQKXOV4HYI5C4TWRKTN7B5YL7GTU/ - () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Q7TWJQKXOV4HYI5C4TWRKTN7B5YL7GTU/ - Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZD2MNS6EW2K2SSMN4YBGPZCC47KBDNEE/ - () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZD2MNS6EW2K2SSMN4YBGPZCC47KBDNEE/ - Mailing List

21 Nov 2024, 09:10

Type Values Removed Values Added
References
  • () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Q7TWJQKXOV4HYI5C4TWRKTN7B5YL7GTU/ -
  • () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZD2MNS6EW2K2SSMN4YBGPZCC47KBDNEE/ -
References () https://gitlab.com/wireshark/wireshark/-/issues/19695 - () https://gitlab.com/wireshark/wireshark/-/issues/19695 -
References () https://www.wireshark.org/security/wnpa-sec-2024-06.html - () https://www.wireshark.org/security/wnpa-sec-2024-06.html -

29 Aug 2024, 15:15

Type Values Removed Values Added
References
  • {'url': 'https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Q7TWJQKXOV4HYI5C4TWRKTN7B5YL7GTU/', 'source': 'cve@gitlab.com'}
  • {'url': 'https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZD2MNS6EW2K2SSMN4YBGPZCC47KBDNEE/', 'source': 'cve@gitlab.com'}

19 Apr 2024, 23:15

Type Values Removed Values Added
References
  • () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Q7TWJQKXOV4HYI5C4TWRKTN7B5YL7GTU/ -

17 Apr 2024, 03:15

Type Values Removed Values Added
References
  • () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZD2MNS6EW2K2SSMN4YBGPZCC47KBDNEE/ -

27 Mar 2024, 12:29

Type Values Removed Values Added
Summary
  • (es) La falla del disector T.38 en Wireshark 4.2.0 a 4.0.3 y 4.0.0 a 4.0.13 permite la denegación de servicio mediante inyección de paquetes o archivo de captura manipulado

26 Mar 2024, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-26 20:15

Updated : 2025-08-06 14:52


NVD link : CVE-2024-2955

Mitre link : CVE-2024-2955

CVE.ORG link : CVE-2024-2955


JSON object : View

Products Affected

wireshark

  • wireshark

fedoraproject

  • fedora
CWE
CWE-762

Mismatched Memory Management Routines

CWE-763

Release of Invalid Pointer or Reference