AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2015-8738

MEDIUM · CVSS 5.5 EPSS 1.41%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2016-01-04 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.5. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2015-8738
Severity
MEDIUM
CVSS
5.5
EPSS
1.41%

Original NVD Description

The s7comm_decode_ud_cpu_szl_subfunc function in epan/dissectors/packet-s7comm_szl_ids.c in the S7COMM dissector in Wireshark 2.0.x before 2.0.1 does not validate the list count in an SZL response, which allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted packet.