CVE-2018-7420Allocation of Resources Without Limits or Throttling in Wireshark

Severity
7.5HIGHNVD
EPSS
2.0%
top 16.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 23
Latest updateMay 13

Description

In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the pcapng file parser could crash. This was addressed in wiretap/pcapng.c by adding a block-size check for sysdig event blocks.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages3 packages

debiandebian/wireshark< wireshark 2.4.5-1 (bookworm)
Debianwireshark/wireshark< 2.4.5-1+3
NVDwireshark/wireshark2.2.02.2.12+1

Also affects: Debian Linux 7.0, 8.0

🔴Vulnerability Details

2
GHSA
GHSA-97j6-895v-6fwj: In Wireshark 22022-05-13
OSV
CVE-2018-7420: In Wireshark 22018-02-23

📋Vendor Advisories

2
Red Hat
wireshark: Pcapng file parser crash in pcapng.c2018-02-08
Debian
CVE-2018-7420: wireshark - In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the pcapng file parser could cr...2018

💬Community

2
Bugzilla
CVE-2018-7420 wireshark: Pcapng file parser crash in pcapng.c2018-02-26
Bugzilla
CVE-2018-7420 wireshark: Pcapng file parser crash in pcapng.c [fedora-all]2018-02-26