PT-2018-10514 · Wireshark+2 · Wireshark+2

Peter Wu

·

Publicado

2018-04-03

·

Atualizado

2024-06-15

·

CVE-2018-11356

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Wireshark versions 2.2.0 through 2.2.14 Wireshark versions 2.4.0 through 2.4.6 Wireshark version 2.6.0
Description The DNS dissector could crash due to a NULL pointer dereference for an empty name in an SRV record.
Recommendations For Wireshark versions 2.2.0 through 2.2.14, update to a version that includes the fix in epan/dissectors/packet-dns.c to avoid the NULL pointer dereference. For Wireshark versions 2.4.0 through 2.4.6, update to a version that includes the fix in epan/dissectors/packet-dns.c to avoid the NULL pointer dereference. For Wireshark version 2.6.0, update to a version that includes the fix in epan/dissectors/packet-dns.c to avoid the NULL pointer dereference.

Correção

NULL Pointer Dereference

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2018-1549
ALT-PU-2018-1794
ALT-PU-2018-2487
CVE-2018-11356
DLA-1634-1
MGASA-2018-0266
OPENSUSE-SU-2018_1428-1
OPENSUSE-SU-2020:0362-1
OPENSUSE-SU-2020_0362-1
OPENSUSE-SU-2024:11513-1
SUSE-SU-2018:1988-1
SUSE-SU-2018:2412-1
SUSE-SU-2018:2891-1
SUSE-SU-2018:2891-2
SUSE-SU-2018_1988-1
SUSE-SU-2020:0693-1

Produtos afetados

Alt Linux
Suse
Wireshark