CVE-2026-3203

Plain English Summary

AI-powered analysis for quick understanding

This vulnerability allows an attacker to crash Wireshark, causing a denial of service, which means users can't analyze network traffic while the program is down. It affects specific versions of Wireshark and can be triggered by sending specially crafted RF4CE Profile protocol packets to the application.

Technical Description

RF4CE Profile protocol dissector crash in Wireshark 4.6.0 to 4.6.3 and 4.4.0 to 4.4.13 allows denial of service

CVSS Vector Analysis

Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredNone
User InteractionNone
Confidentiality ImpactNone
Integrity ImpactNone
Availability ImpactHigh
ScopeUnchanged

Vector String

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Exploit Resources

Search for proof-of-concept code and exploit modules

Official References