ECMP dissector crash in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file
The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Wireshark | Wireshark | 4.2.0 (including) | 4.2.9 (excluding) |
Wireshark | Wireshark | 4.4.0 (including) | 4.4.2 (excluding) |
Wireshark | Ubuntu | esm-apps/bionic | * |
Wireshark | Ubuntu | esm-apps/focal | * |
Wireshark | Ubuntu | esm-apps/jammy | * |
Wireshark | Ubuntu | esm-apps/noble | * |
Wireshark | Ubuntu | esm-apps/xenial | * |
Wireshark | Ubuntu | esm-infra-legacy/trusty | * |
Wireshark | Ubuntu | focal | * |
Wireshark | Ubuntu | jammy | * |
Wireshark | Ubuntu | noble | * |
Wireshark | Ubuntu | oracular | * |
Wireshark | Ubuntu | trusty/esm | * |
Wireshark | Ubuntu | upstream | * |