Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-26575

Опубликовано: 06 окт. 2020
Источник: debian
EPSS Низкий

Описание

In Wireshark through 3.2.7, the Facebook Zero Protocol (aka FBZERO) dissector could enter an infinite loop. This was addressed in epan/dissectors/packet-fbzero.c by correcting the implementation of offset advancement.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
wiresharkfixed3.2.8-0.1package
wiresharkfixed2.6.20-0+deb10u1busterpackage

Примечания

  • https://gitlab.com/wireshark/wireshark/-/commit/3ff940652962c099b73ae3233322b8697b0d10ab

  • https://gitlab.com/wireshark/wireshark/-/issues/16887

  • https://gitlab.com/wireshark/wireshark/-/merge_requests/467

  • https://gitlab.com/wireshark/wireshark/-/merge_requests/471

  • https://gitlab.com/wireshark/wireshark/-/merge_requests/472

  • https://gitlab.com/wireshark/wireshark/-/merge_requests/473

  • https://www.wireshark.org/security/wnpa-sec-2020-14

EPSS

Процентиль: 84%
0.02233
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 5 лет назад

In Wireshark through 3.2.7, the Facebook Zero Protocol (aka FBZERO) dissector could enter an infinite loop. This was addressed in epan/dissectors/packet-fbzero.c by correcting the implementation of offset advancement.

CVSS3: 7.5
redhat
больше 5 лет назад

In Wireshark through 3.2.7, the Facebook Zero Protocol (aka FBZERO) dissector could enter an infinite loop. This was addressed in epan/dissectors/packet-fbzero.c by correcting the implementation of offset advancement.

CVSS3: 7.5
nvd
больше 5 лет назад

In Wireshark through 3.2.7, the Facebook Zero Protocol (aka FBZERO) dissector could enter an infinite loop. This was addressed in epan/dissectors/packet-fbzero.c by correcting the implementation of offset advancement.

github
больше 3 лет назад

In Wireshark through 3.2.7, the Facebook Zero Protocol (aka FBZERO) dissector could enter an infinite loop. This was addressed in epan/dissectors/packet-fbzero.c by correcting the implementation of offset advancement.

CVSS3: 7.5
fstec
больше 5 лет назад

Уязвимость функции в epan/dissectors/packet-fbzero.c программного обеспечения Wireshark, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 84%
0.02233
Низкий