CRITICAL 9.8 Microsoft
CVE-2022-0582
Unaligned access in the CSN.1 protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file
Microsoft Security Update 2022-Feb: Unaligned access in the CSN.1 protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file
Affected Products
- cbl2 wireshark 3.4.14-1 on CBL Mariner 2.0
References
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-0582
- https://nvd.nist.gov/vuln/detail/CVE-2022-0582
This critical severity vulnerability with a CVSS score of 9.8 was published on 2022-02-08 via Microsoft. Affected: cbl2 wireshark 3.4.14-1 on CBL Mariner 2.0.
Risk Timeline
CVE Disclosed2022-02-08 · 1671 days ago
Remediation Resources
Official Advisory
msrc.microsoft.com/update-guide/vulnerability/CVE-2022-0582NVD / MITRE
nvd.nist.gov/vuln/detail/CVE-2022-0582Related Vulnerabilities
| CVE | Title | Severity | CVSS |
|---|---|---|---|
| CVE-2025-49844 PoC | Redis Lua Use-After-Free may lead to remote code execution | CRITICAL | 9.9 |
| CVE-2025-62878 | Local Path Provisioner vulnerable to Path Traversal via parameters.pathPattern | CRITICAL | 9.9 |
| CVE-2024-27304 | pgx SQL Injection via Protocol Message Size Overflow | CRITICAL | 9.8 |
| CVE-2024-29157 | HDF5 through 1.14.3 contains a heap buffer overflow in H5HG_read resulting in th | CRITICAL | 9.8 |
| CVE-2024-29159 | HDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_scaleoffset result | CRITICAL | 9.8 |
| CVE-2024-29164 | HDF5 through 1.14.3 contains a stack buffer overflow in H5R__decode_heap resulti | CRITICAL | 9.8 |
vulnfeed aggregates 10539 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.