CVE-2020-11647 log
| Source |
|
| Severity | Critical |
| Remote | Yes |
| Type | Arbitrary code execution |
| Description | A stack overflow has been found in the fAbstractSyntaxNType function of the BACApp dissector of Wireshark versions prior to 3.2.3, which could be triggered by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-1129 | wireshark-cli | 3.2.2-1 | 3.2.3-1 | Critical | Fixed |
| Date | Advisory | Group | Package | Severity | Type |
|---|---|---|---|---|---|
| 09 Apr 2020 | ASA-202004-10 | AVG-1129 | wireshark-cli | Critical | arbitrary code execution |
| References |
|---|
https://www.wireshark.org/security/wnpa-sec-2020-07 https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=16474 |