Skip to main content

Missing Initialization of Resource

CVE-2024-9780

Severity Medium
Score 5.5/10

Summary

ITS dissector crash in Wireshark 4.4.0rc0 through 4.4.0 allows Denial of Service(DoS) via packet injection or crafted capture file.

  • LOW
  • LOCAL
  • NONE
  • UNCHANGED
  • REQUIRED
  • NONE
  • NONE
  • HIGH

CWE-909 - Missing Initialization of Resource

The software does not initialize a critical resource.

Advisory Timeline

  • Published