#VU118636 Input validation error in Wireshark - CVE-2025-13499
Published: November 20, 2025 / Updated: November 28, 2025
Wireshark
Wireshark.org
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input in the Kafka dissector. A remote attacker can trick a victim to read a malformed packet trace file and perform a denial of service (DoS) attack.