In Wireshark 2.6.0, the IEEE 1905.1a dissector could crash. This was addressed in epan/dissectors/packet-ieee1905.c by making a certain correction to string handling.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Arch Linux | — | Upgrade to the latest version of Arch Linux | Jul 11, 2025 | May 22, 2018 |
| Suse | — | Upgrade libwiretap7Upgrade libwsutil8Upgrade libwsutil7Upgrade wireshark-gtkUpgrade spandsp-docUpgrade libwsutil11Upgrade libspandsp2-32bitUpgrade libwiretap6Upgrade libmaxminddb0-32bitUpgrade wireshark-ui-qtUpgrade libwiretap10Upgrade mmdblookupUpgrade libmaxminddb0Upgrade libwireshark9Upgrade libwireshark13Upgrade wiresharkUpgrade libmaxminddb-develUpgrade libwscodecs1Upgrade libspandsp2Upgrade wireshark-develUpgrade libwireshark8Upgrade spandsp-devel | Aug 18, 2018 | May 22, 2018 |
| Wireshark | — | Upgrade to Wireshark version 2.6.1 | May 23, 2018 | May 22, 2018 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub