PT-2016-7736 · Wireshark+1 · Wireshark+1
Publicado
2016-11-17
·
Atualizado
2024-06-15
·
CVE-2016-9372
CVSS v3.1
5.9
Média
| Vetor | AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Wireshark versions 2.2.0 through 2.2.1
Description
The issue is related to the Profinet I/O dissector, which could loop excessively due to network traffic or a capture file. This was resolved by rejecting input with too many I/O objects in the plugins/profinet/packet-pn-rtc-one.c file.
Recommendations
For Wireshark versions 2.2.0 through 2.2.1, update the plugins/profinet/packet-pn-rtc-one.c file to reject input with too many I/O objects to prevent excessive looping.
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Alt Linux
Wireshark