The vendor explicitly identifies these products as affected by this CVE.
- wireshark as a component of Red Hat Enterprise Linux 10
- wireshark-cli as a component of Red Hat Enterprise Linux 10
- wireshark-devel as a component of Red Hat Enterprise Linux 10
- wireshark.src as a component of Red Hat Enterprise Linux 10
- Summary
- A flaw was found in Wireshark. A remote attacker could exploit a buffer over-read vulnerability in the ERF (Extensible Record Format) file parser. This could lead to a denial of service, making the application unavailable to legitimate users.
- Remediation
- Avoid opening ERF (Extensible Record Format) capture files from untrusted or unknown sources in Wireshark.
