CVE-2025-13945

HTTP3 dissector crash in Wireshark 4.6.0 and 4.6.1 allows denial of service
References
Link Resource
https://gitlab.com/wireshark/wireshark/-/issues/20860 Exploit Issue Tracking Third Party Advisory Patch
https://www.wireshark.org/security/wnpa-sec-2025-07.html Vendor Advisory Exploit Issue Tracking
Configurations

Configuration 1 (hide)

cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*:*

History

05 Dec 2025, 15:08

Type Values Removed Values Added
First Time Wireshark wireshark
Wireshark
References () https://gitlab.com/wireshark/wireshark/-/issues/20860 - () https://gitlab.com/wireshark/wireshark/-/issues/20860 - Exploit, Issue Tracking, Third Party Advisory, Patch
References () https://www.wireshark.org/security/wnpa-sec-2025-07.html - () https://www.wireshark.org/security/wnpa-sec-2025-07.html - Vendor Advisory, Exploit, Issue Tracking
CPE cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*:*

03 Dec 2025, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-03 08:15

Updated : 2025-12-05 15:08


NVD link : CVE-2025-13945

Mitre link : CVE-2025-13945

CVE.ORG link : CVE-2025-13945


JSON object : View

Products Affected

wireshark

  • wireshark
CWE
CWE-1325

Improperly Controlled Sequential Memory Allocation