CRITICAL 9.8 Microsoft

CVE-2022-0582

Unaligned access in the CSN.1 protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file

Microsoft Security Update 2022-Feb: Unaligned access in the CSN.1 protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file

Affected Products

References

Published: 2022-02-08 · Source: Microsoft · Feed updated: 2026-09-07
This critical severity vulnerability with a CVSS score of 9.8 was published on 2022-02-08 via Microsoft. Affected: cbl2 wireshark 3.4.14-1 on CBL Mariner 2.0.

Risk Timeline

CVE Disclosed2022-02-08 · 1671 days ago

Remediation Resources

Related Vulnerabilities

CVETitleSeverityCVSS
CVE-2025-49844 PoCRedis Lua Use-After-Free may lead to remote code executionCRITICAL9.9
CVE-2025-62878Local Path Provisioner vulnerable to Path Traversal via parameters.pathPatternCRITICAL9.9
CVE-2024-27304pgx SQL Injection via Protocol Message Size OverflowCRITICAL9.8
CVE-2024-29157HDF5 through 1.14.3 contains a heap buffer overflow in H5HG_read resulting in thCRITICAL9.8
CVE-2024-29159HDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_scaleoffset resultCRITICAL9.8
CVE-2024-29164HDF5 through 1.14.3 contains a stack buffer overflow in H5R__decode_heap resultiCRITICAL9.8
vulnfeed aggregates 10539 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.