vulnerability

Wireshark : CVE-2020-25863 : MIME Multipart dissector crash

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Sep 24, 2020
Added
Sep 24, 2020
Modified
Oct 13, 2020

Description

In Wireshark 3.2.0 to 3.2.6, 3.0.0 to 3.0.13, and 2.6.0 to 2.6.20, the MIME Multipart dissector could crash. This was addressed in epan/dissectors/packet-multipart.c by correcting the deallocation of invalid MIME parts.

Solution(s)

wireshark-upgrade-2_6_20wireshark-upgrade-3_0_14wireshark-upgrade-3_2_7
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.