Red Hat Bugzilla – Bug 1607327
CVE-2018-14368 wireshark: Bazaar dissector infinite loop (wnpa-sec-2018-40)
Last modified: 2018-08-06 15:51:25 EDT
It was found that Bazaar dissector could crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. Upstream bug(s): https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14841 External References: https://www.wireshark.org/security/wnpa-sec-2018-40.html
Created wireshark tracking bugs for this issue: Affects: fedora-all [bug 1607334]
Upstream patch: https://code.wireshark.org/review/#/c/28228/2/epan/dissectors/packet-bzr.c