In Wireshark 2.6.0 to 2.6.4, the ZigBee ZCL dissector could crash. This was addressed in epan/dissectors/packet-zbee-zcl-lighting.c by preventing a divide-by-zero error. Upstream issue: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=15281 Upstream patch: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=212b18825d9b668cda23d334c48867dfa66b2b36 External References: https://www.wireshark.org/security/wnpa-sec-2018-57.html
Created wireshark tracking bugs for this issue: Affects: fedora-all [bug 1655944]
ZigBee is a family of WPAN protocols, thus AV:A.
Statement: This issue did not affect the versions of wireshark as shipped with Red Hat Enterprise Linux 5, 6, and 7.
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2018-19628