It was reported that Wireshark's packet reassembly code could leak memory.. It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. This flaw is fixed in versions the following Wireshark versions: 1.12.5. Upstream bug: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=11129 External References: https://www.wireshark.org/security/wnpa-sec-2015-16.html
Fixed in Fedora via: FEDORA-2015-8150 -- wireshark-1.12.5-1.fc21
Patch ----- https://code.wireshark.org/review/gitweb?p=wireshark.git;a=patch;h=27e0dac05b05b2fe780bbcb685933a714be10ef0
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2015:2393 https://rhn.redhat.com/errata/RHSA-2015-2393.html
Statement: (none)
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Via RHSA-2017:0631 https://rhn.redhat.com/errata/RHSA-2017-0631.html