CVE-2017-17997NULL Pointer Dereference in Wireshark

Severity
7.5HIGHNVD
EPSS
0.7%
top 27.93%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 30
Latest updateMay 14

Description

In Wireshark before 2.2.12, the MRDISC dissector misuses a NULL pointer and crashes. This was addressed in epan/dissectors/packet-mrdisc.c by validating an IPv4 address. This vulnerability is similar to CVE-2017-9343.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages3 packages

debiandebian/wireshark< wireshark 2.4.0-1 (bookworm)
Debianwireshark/wireshark< 2.4.0-1+3

Also affects: Debian Linux 8.0

Patches

🔴Vulnerability Details

2
GHSA
GHSA-rc73-pc24-f3rr: In Wireshark before 22022-05-14
OSV
CVE-2017-17997: In Wireshark before 22017-12-30

📋Vendor Advisories

2
Red Hat
wireshark: Misuse of NULL pointer in MRDISC dissector2017-12-29
Debian
CVE-2017-17997: wireshark - In Wireshark before 2.2.12, the MRDISC dissector misuses a NULL pointer and cras...2017

💬Community

2
Bugzilla
CVE-2017-17997 wireshark: Misuse of NULL pointer in MRDISC dissector2018-01-04
Bugzilla
CVE-2017-17997 wireshark: Misuse of NULL pointer in MRDISC dissector [fedora-all]2018-01-04