Fedora Account System
Red Hat Associate
Red Hat Customer
In Wireshark 2.4.0 to 2.4.12 and 2.6.0 to 2.6.6, the ASN.1 BER and related dissectors could crash. This was addressed in epan/dissectors/packet-ber.c by preventing a buffer overflow associated with excessive digits in time values. Reference: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=15447 Upstream Patch: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=f8fbe9f934d65b2694fa74622e5eb2e1dc8cd20b
External References: https://www.wireshark.org/security/wnpa-sec-2019-06.html
Statement: This issue did not affect the versions of wireshark as shipped with Red Hat Enterprise Linux 5 and 6. This issue affects the versions of wireshark as shipped with Red Hat Enterprise Linux 7.