In Wireshark 2.6.0, the IEEE 1905.1a dissector could crash. This was addressed in epan/dissectors/packet-ieee1905.c by making a certain correction to string handling.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Arch Linux | — | Upgrade to the latest version of Arch Linux | Jul 11, 2025 | May 22, 2018 |
| Suse | — | Upgrade libmaxminddb0-32bitUpgrade wireshark-ui-qtUpgrade libwiretap7Upgrade libwiretap10Upgrade wireshark-gtkUpgrade libwiretap6Upgrade libwsutil7Upgrade libspandsp2-32bitUpgrade libwsutil8Upgrade spandsp-docUpgrade libwsutil11Upgrade libwireshark13Upgrade spandsp-develUpgrade libspandsp2Upgrade wireshark-develUpgrade libwscodecs1Upgrade mmdblookupUpgrade wiresharkUpgrade libwireshark9Upgrade libmaxminddb0Upgrade libmaxminddb-develUpgrade libwireshark8 | Aug 18, 2018 | May 22, 2018 |
| Wireshark | — | Upgrade to Wireshark version 2.6.1 | May 23, 2018 | May 22, 2018 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub