In Wireshark 2.6.0, the IEEE 1905.1a dissector could crash. This was addressed in epan/dissectors/packet-ieee1905.c by making a certain correction to string handling.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Arch Linux | — | Upgrade to the latest version of Arch Linux | Jul 11, 2025 | May 22, 2018 |
| Suse | — | Upgrade spandsp-develUpgrade libmaxminddb0Upgrade libwireshark13Upgrade libmaxminddb-develUpgrade libspandsp2Upgrade mmdblookupUpgrade libwireshark9Upgrade libwireshark8Upgrade wiresharkUpgrade wireshark-develUpgrade libwscodecs1Upgrade libspandsp2-32bitUpgrade spandsp-docUpgrade libwsutil8Upgrade libwiretap7Upgrade wireshark-gtkUpgrade wireshark-ui-qtUpgrade libmaxminddb0-32bitUpgrade libwiretap10Upgrade libwsutil7Upgrade libwiretap6Upgrade libwsutil11 | Aug 18, 2018 | May 22, 2018 |
| Wireshark | — | Upgrade to Wireshark version 2.6.1 | May 23, 2018 | May 22, 2018 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub