Total vulnerabilities in the database
In Wireshark 3.0.0 to 3.0.2, 2.6.0 to 2.6.9, and 2.4.0 to 2.4.15, the ASN.1 BER dissector and related dissectors could crash. This was addressed in epan/asn1.c by properly restricting buffer increments.
Software | From | Fixed in |
---|---|---|
wireshark / wireshark | 3.0.0 | 3.0.2.x |
wireshark / wireshark | 2.6.0 | 2.6.9.x |
wireshark / wireshark | 2.4.0 | 2.4.15.x |
fedoraproject / fedora | 29 | 29.x |
fedoraproject / fedora | 30 | 30.x |
canonical / ubuntu_linux | 16.04 | 16.04.x |
canonical / ubuntu_linux | 18.04 | 18.04.x |
canonical / ubuntu_linux | 19.04 | 19.04.x |
debian / debian_linux | 9.0 | 9.0.x |
opensuse / leap | 15.0 | 15.0.x |
opensuse / leap | 15.1 | 15.1.x |