CVE Vulnerabilities

CVE-2018-16057

Published: Aug 30, 2018 | Modified: Nov 07, 2023
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
3.7 LOW
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
Ubuntu
MEDIUM

In Wireshark 2.6.0 to 2.6.2, 2.4.0 to 2.4.8, and 2.2.0 to 2.2.16, the Radiotap dissector could crash. This was addressed in epan/dissectors/packet-ieee80211-radiotap-iter.c by validating iterator operations.

Affected Software

Name Vendor Start Version End Version
Wireshark Wireshark 2.2.0 (including) 2.2.16 (including)
Wireshark Wireshark 2.4.0 (including) 2.4.8 (including)
Wireshark Wireshark 2.6.0 (including) 2.6.2 (including)
Red Hat Enterprise Linux 7 RedHat wireshark-0:1.10.14-24.el7 *
Wireshark Ubuntu bionic *
Wireshark Ubuntu trusty *
Wireshark Ubuntu xenial *

References