CVE-2017-5596 log
Source |
|
Severity | Medium |
Remote | Yes |
Type | Denial of service |
Description | In Wireshark 2.2.0 to 2.2.3 and 2.0.0 to 2.0.9, the ASTERIX dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-asterix.c by changing a data type to avoid an integer overflow. |
Group | Package | Affected | Fixed | Severity | Status | Ticket |
---|---|---|---|---|---|---|
AVG-225 | wireshark-cli | 2.2.3-1 | 2.2.4-1 | Medium | Fixed |
References |
---|
https://www.wireshark.org/security/wnpa-sec-2017-01.html |