CVE-2019-13619
17.07.2019, 20:15
In Wireshark 3.0.0 to 3.0.2, 2.6.0 to 2.6.9, and 2.4.0 to 2.4.15, the ASN.1 BER dissector and related dissectors could crash. This was addressed in epan/asn1.c by properly restricting buffer increments.Enginsight
| Vendor | Product | Version |
|---|---|---|
| wireshark | wireshark | 2.4.0 ≤ 𝑥 ≤ 2.4.15 |
| wireshark | wireshark | 2.6.0 ≤ 𝑥 ≤ 2.6.9 |
| wireshark | wireshark | 3.0.0 ≤ 𝑥 ≤ 3.0.2 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 18.04 |
| canonical | ubuntu_linux | 19.04 |
| debian | debian_linux | 9.0 |
| opensuse | leap | 15.0 |
| opensuse | leap | 15.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| wireshark |
|
Common Weakness Enumeration
References