In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-dcm.c had an infinite loop that was addressed by checking for integer wraparound.
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.
Link | Tags |
---|---|
https://lists.debian.org/debian-lts-announce/2018/04/msg00018.html | third party advisory mailing list |
https://www.wireshark.org/security/wnpa-sec-2018-06.html | vendor advisory |
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14411 | issue tracking vendor advisory |
https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=afc780e2c796e971bb7d164103f4f0d10d3c25b5 | |
http://www.securityfocus.com/bid/103158 | vdb entry third party advisory |
https://lists.debian.org/debian-lts-announce/2019/01/msg00010.html | third party advisory mailing list |