CVE Vulnerabilities

CVE-2017-15192

Published: Oct 10, 2017 | Modified: Apr 20, 2025
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
5.9 MODERATE
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

In Wireshark 2.4.0 to 2.4.1 and 2.2.0 to 2.2.9, the BT ATT dissector could crash. This was addressed in epan/dissectors/packet-btatt.c by considering a case where not all of the BTATT packets have the same encapsulation level.

Affected Software

NameVendorStart VersionEnd Version
WiresharkWireshark2.2.0 (including)2.2.0 (including)
WiresharkWireshark2.2.1 (including)2.2.1 (including)
WiresharkWireshark2.2.2 (including)2.2.2 (including)
WiresharkWireshark2.2.3 (including)2.2.3 (including)
WiresharkWireshark2.2.4 (including)2.2.4 (including)
WiresharkWireshark2.2.5 (including)2.2.5 (including)
WiresharkWireshark2.2.6 (including)2.2.6 (including)
WiresharkWireshark2.2.7 (including)2.2.7 (including)
WiresharkWireshark2.2.8 (including)2.2.8 (including)
WiresharkWireshark2.2.9 (including)2.2.9 (including)
WiresharkWireshark2.4.0 (including)2.4.0 (including)
WiresharkWireshark2.4.1 (including)2.4.1 (including)
WiresharkUbuntuartful*
WiresharkUbuntubionic*
WiresharkUbuntuesm-apps/bionic*
WiresharkUbuntuesm-apps/xenial*
WiresharkUbuntuesm-infra-legacy/trusty*
WiresharkUbuntutrusty*
WiresharkUbuntutrusty/esm*
WiresharkUbuntuxenial*
WiresharkUbuntuzesty*

References