Fedora Account System
Red Hat Associate
Red Hat Customer
It was reported that Wireshark's IEEE 802.11 dissector could enter an infinite loop. It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. This flaw is fixed in versions the following Wireshark versions: 1.12.5, 1.10.14. Upstream bug: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=11110 External References: https://www.wireshark.org/security/wnpa-sec-2015-17.html
Fixed in Fedora via: FEDORA-2015-8174 -- wireshark-1.10.14-1.fc20 FEDORA-2015-8150 -- wireshark-1.12.5-1.fc21
Statement: This issue did not affect the versions of wireshark as shipped with Red Hat Enterprise Linux 5, 6 and 7.
Patch ----- https://code.wireshark.org/review/gitweb?p=wireshark.git;a=patch;h=66f3753ed9733383c4039ed25bc11879942cc07f