In Wireshark 2.2.4 and earlier, a crafted or malformed STANAG 4607 capture file will cause an infinite loop and memory exhaustion. If the packet size field in a packet header is null, the offset to read from will not advance, causing continuous attempts to read the same zero length packet. This will quickly exhaust all system memory.
CVSS Details
- CVSS 3.0 Base Score: 7.5
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade wireshark | Aug 22, 2024 | Feb 17, 2017 |
| Debian | — | Upgrade wireshark | Mar 19, 2017 | Feb 17, 2017 |
| Gentoo Linux | — | Upgrade net-analyzer/wireshark. | Oct 30, 2017 | Feb 17, 2017 |
| Oracle Solaris | — | Upgrade diagnostic/wireshark/wireshark-common to version 2.2.6-0.175.3.21.0.4.0 on Solaris 11.3Upgrade diagnostic/wireshark/tshark to version 2.2.6-0.175.3.21.0.4.0 on Solaris 11.3Upgrade diagnostic/wireshark to version 2.2.6-0.175.3.21.0.4.0 on Solaris 11.3 | Jun 21, 2017 | Feb 17, 2017 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Feb 16, 2017 |
| Suse | — | Upgrade libwiretap6Upgrade libwscodecs1Upgrade wiresharkUpgrade wireshark-develUpgrade libwsutil7Upgrade libwireshark9Upgrade libwireshark8Upgrade libwsutil8Upgrade libwiretap7Upgrade wireshark-gtk | May 4, 2017 | Feb 17, 2017 |
| Ubuntu | — | Upgrade wireshark | Nov 19, 2024 | Feb 17, 2017 |
| Wireshark | — | Upgrade to Wireshark version 2.0.11Upgrade to Wireshark version 2.2.5 | Oct 4, 2017 | Feb 17, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub