It was reported that Wireshark's WBXML could loop infinitely. It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. Upstream bug(s): https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=12408 External References: https://www.wireshark.org/security/wnpa-sec-2016-38.html
Created wireshark tracking bugs for this issue: Affects: fedora-all [bug 1343978]
CVE assignment: http://seclists.org/oss-sec/2016/q2/510 Upstream fix: https://github.com/wireshark/wireshark/commit/b8e0d416898bb975a02c1b55883342edc5b4c9c0