Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-26575

Опубликовано: 06 окт. 2020
Источник: debian
EPSS Низкий

Описание

In Wireshark through 3.2.7, the Facebook Zero Protocol (aka FBZERO) dissector could enter an infinite loop. This was addressed in epan/dissectors/packet-fbzero.c by correcting the implementation of offset advancement.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
wiresharkfixed3.2.8-0.1package
wiresharkfixed2.6.20-0+deb10u1busterpackage

Примечания

  • https://gitlab.com/wireshark/wireshark/-/commit/3ff940652962c099b73ae3233322b8697b0d10ab

  • https://gitlab.com/wireshark/wireshark/-/issues/16887

  • https://gitlab.com/wireshark/wireshark/-/merge_requests/467

  • https://gitlab.com/wireshark/wireshark/-/merge_requests/471

  • https://gitlab.com/wireshark/wireshark/-/merge_requests/472

  • https://gitlab.com/wireshark/wireshark/-/merge_requests/473

  • https://www.wireshark.org/security/wnpa-sec-2020-14

EPSS

Процентиль: 87%
0.03116
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 6 лет назад

In Wireshark through 3.2.7, the Facebook Zero Protocol (aka FBZERO) dissector could enter an infinite loop. This was addressed in epan/dissectors/packet-fbzero.c by correcting the implementation of offset advancement.

CVSS3: 7.5
redhat
почти 6 лет назад

In Wireshark through 3.2.7, the Facebook Zero Protocol (aka FBZERO) dissector could enter an infinite loop. This was addressed in epan/dissectors/packet-fbzero.c by correcting the implementation of offset advancement.

CVSS3: 7.5
nvd
почти 6 лет назад

In Wireshark through 3.2.7, the Facebook Zero Protocol (aka FBZERO) dissector could enter an infinite loop. This was addressed in epan/dissectors/packet-fbzero.c by correcting the implementation of offset advancement.

github
больше 4 лет назад

In Wireshark through 3.2.7, the Facebook Zero Protocol (aka FBZERO) dissector could enter an infinite loop. This was addressed in epan/dissectors/packet-fbzero.c by correcting the implementation of offset advancement.

CVSS3: 7.5
fstec
почти 6 лет назад

Уязвимость функции в epan/dissectors/packet-fbzero.c программного обеспечения Wireshark, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 87%
0.03116
Низкий