CVE-2017-5596 log

Source
Severity Medium
Remote Yes
Type Denial of service
Description
In Wireshark 2.2.0 to 2.2.3 and 2.0.0 to 2.0.9, the ASTERIX dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-asterix.c by changing a data type to avoid an integer overflow.
Group Package Affected Fixed Severity Status Ticket
AVG-225 wireshark-cli 2.2.3-1 2.2.4-1 Medium Fixed
References
https://www.wireshark.org/security/wnpa-sec-2017-01.html