Red Hat Bugzilla – Bug 1343972
CVE-2016-5359 wireshark: WBXML infinite loop (wnpa-sec-2016-38)
Last modified: 2016-06-09 10:42:39 EDT
It was reported that Wireshark's WBXML could loop infinitely. It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. Upstream bug(s): https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=12408 External References: https://www.wireshark.org/security/wnpa-sec-2016-38.html
Created wireshark tracking bugs for this issue: Affects: fedora-all [bug 1343978]
CVE assignment: http://seclists.org/oss-sec/2016/q2/510 Upstream fix: https://github.com/wireshark/wireshark/commit/b8e0d416898bb975a02c1b55883342edc5b4c9c0