CVE-2018-18225 - log back

CVE-2018-18225 created at 25 Sep 2019 19:31:40
Severity
+ Low
Remote
+ Remote
Type
+ Denial of service
Description
+ A flaw has been discovered in wireshark >= 2.6.0 and < 2.6.4 in the CoAP dissector where an invalid frame could lead to NULL-pointer dereference. This could be used by an attacker to crash wireshark by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file.
References
+ https://www.wireshark.org/security/wnpa-sec-2018-49
+ https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=15172
+ https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commitdiff;h=b2bbd9fdf209911d94b23cc33f4daccbceb7fa8a
Notes