PT-2018-18023 · Wireshark+2 · Wireshark+2

Peter Wu

·

Published

2018-02-23

·

Updated

2024-06-15

·

CVE-2018-7320

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Wireshark versions 2.2.0 through 2.2.12 Wireshark versions 2.4.0 through 2.4.4
Description The SIGCOMP protocol dissector could crash due to invalid operand offsets. This issue was addressed by validating operand offsets in the epan/dissectors/packet-sigcomp.c file.
Recommendations For Wireshark versions 2.2.0 through 2.2.12, update to a version where the SIGCOMP protocol dissector has been fixed by validating operand offsets. For Wireshark versions 2.4.0 through 2.4.4, update to a version where the SIGCOMP protocol dissector has been fixed by validating operand offsets.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

ALT-PU-2018-1290
ALT-PU-2018-2487
CVE-2018-7320
DSA-4217-1
MGASA-2018-0151
OPENSUSE-SU-2024:11513-1
SUSE-SU-2018:0811-1
SUSE-SU-2018:0867-1

Affected Products

Alt Linux
Suse
Wireshark