{"schema_version":"1.7.2","id":"OESA-2025-2266","modified":"2025-09-12T14:25:12Z","published":"2025-09-12T14:25:12Z","upstream":["CVE-2025-9817"],"summary":"wireshark security update","details":"Security Fix(es):\n\nA vulnerability classified as problematic (CWE-476) has been found in Wireshark versions 4.4.0 to 4.4.8. The application dereferences a pointer that it expects to be valid but is NULL, typically causing a crash or exit, impacting availability. Upgrading to version 4.4.9 eliminates this vulnerability.(CVE-2025-9817)","affected":[{"package":{"ecosystem":"openEuler:22.03-LTS-SP3","name":"wireshark","purl":"pkg:rpm/openEuler/wireshark&distro=openEuler-22.03-LTS-SP3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.4.7-2.oe2203sp3"}]}],"ecosystem_specific":{"aarch64":["wireshark-4.4.7-2.oe2203sp3.aarch64.rpm","wireshark-debuginfo-4.4.7-2.oe2203sp3.aarch64.rpm","wireshark-debugsource-4.4.7-2.oe2203sp3.aarch64.rpm","wireshark-devel-4.4.7-2.oe2203sp3.aarch64.rpm"],"noarch":["wireshark-help-4.4.7-2.oe2203sp3.noarch.rpm"],"src":["wireshark-4.4.7-2.oe2203sp3.src.rpm"],"x86_64":["wireshark-4.4.7-2.oe2203sp3.x86_64.rpm","wireshark-debuginfo-4.4.7-2.oe2203sp3.x86_64.rpm","wireshark-debugsource-4.4.7-2.oe2203sp3.x86_64.rpm","wireshark-devel-4.4.7-2.oe2203sp3.x86_64.rpm"]}}],"references":[{"type":"ADVISORY","url":"https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2025-2266"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-9817"}],"database_specific":{"severity":"High"}}
