Total vulnerabilities in the database
In Wireshark 2.6.0 to 2.6.1, 2.4.0 to 2.4.7, and 2.2.0 to 2.2.15, the MMSE dissector could go into an infinite loop. This was addressed in epan/proto.c by adding offset and length validation.
Software | From | Fixed in |
---|---|---|
wireshark / wireshark | 2.2.0 | 2.2.15.x |
wireshark / wireshark | 2.4.0 | 2.4.7.x |
wireshark / wireshark | 2.6.0 | 2.6.1.x |
debian / debian_linux | 8.0 | 8.0.x |