From: https://www.wireshark.org/security/wnpa-sec-2015-08.html Name: Pcapng file parser crash Docid: wnpa-sec-2015-08 Date: March 4, 2015 Affected versions: 1.12.0 to 1.12.3, 1.10.0 to 1.10.12 https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=10895 Upstream 1.10.x patch: https://code.wireshark.org/review/#/c/6802/ Description: The pcapng file parser could crash. Impact: It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file.
Created wireshark tracking bugs for this issue: Affects: fedora-all [bug 1199173]
Statement: This issue did not affect the versions of wireshark as shipped with Red Hat Enterprise Linux 5.
Patch ===== https://code.wireshark.org/review/gitweb?p=wireshark.git;a=patch;h=de0eeb5d6e34b26ab934bdf3e39884783c8afddd POC === https://bugs.wireshark.org/bugzilla/attachment.cgi?id=13407
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Via RHSA-2015:1460 https://rhn.redhat.com/errata/RHSA-2015-1460.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2015:2393 https://rhn.redhat.com/errata/RHSA-2015-2393.html