Improper URL handling in Wireshark 3.4.0 to 3.4.3 and 3.2.0 to 3.2.11 could allow remote code execution via via packet injection or crafted capture file.
| Software | From | Fixed in |
|---|---|---|
| wireshark / wireshark | 3.2.0 | 3.2.11.x |
| wireshark / wireshark | 3.4.0 | 3.4.3.x |
| oracle / zfs_storage_appliance | 8.8 | 8.8.x |
| debian / debian_linux | 9.0 | 9.0.x |