CVE-2020-9428
27.02.2020, 23:15
In Wireshark 3.2.0 to 3.2.1, 3.0.0 to 3.0.8, and 2.6.0 to 2.6.14, the EAP dissector could crash. This was addressed in epan/dissectors/packet-eap.c by using more careful sscanf parsing.Enginsight
Vendor | Product | Version |
---|---|---|
wireshark | wireshark | 2.6.0 ≤ 𝑥 ≤ 2.6.14 |
wireshark | wireshark | 3.0.0 ≤ 𝑥 ≤ 3.0.8 |
wireshark | wireshark | 3.2.0 ≤ 𝑥 ≤ 3.2.1 |
debian | debian_linux | 9.0 |
opensuse | leap | 15.1 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References