CVE-2025-1492: Wireshark
High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Bundle Protocol and CBOR dissector crashes in Wireshark 4.4.0 to 4.4.3 and 4.2.0 to 4.2.10 allows denial of service via packet injection or crafted capture file
Affected products
- Wireshark Wireshark: from 4.2.0, up to and including 4.2.10; from 4.4.0, up to and including 4.4.3
Published 2025-02-20. Last modified 2026-06-17.