ECMP dissector crash in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file
The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.
| Name | Vendor | Start Version | End Version | 
|---|---|---|---|
| Wireshark | Wireshark | 4.2.0 (including) | 4.2.9 (excluding) | 
| Wireshark | Wireshark | 4.4.0 (including) | 4.4.2 (excluding) | 
| Wireshark | Ubuntu | esm-apps/bionic | * | 
| Wireshark | Ubuntu | esm-apps/focal | * | 
| Wireshark | Ubuntu | esm-apps/jammy | * | 
| Wireshark | Ubuntu | esm-apps/noble | * | 
| Wireshark | Ubuntu | esm-apps/xenial | * | 
| Wireshark | Ubuntu | esm-infra-legacy/trusty | * | 
| Wireshark | Ubuntu | focal | * | 
| Wireshark | Ubuntu | jammy | * | 
| Wireshark | Ubuntu | noble | * | 
| Wireshark | Ubuntu | oracular | * | 
| Wireshark | Ubuntu | trusty/esm | * | 
| Wireshark | Ubuntu | upstream | * |