~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
Candidate: CVE-2017-9343
PublicDate: 2017-06-02
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-9343
 https://www.wireshark.org/security/wnpa-sec-2017-30.html
 https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=13725
 https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=1678
 https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=27556320b41904716b9c9f73ef8f4fe705d1e669
Description:
 In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the MSNIP dissector
 misuses a NULL pointer. This was addressed in
 epan/dissectors/packet-msnip.c by validating an IPv4 address.
Ubuntu-Description:
Notes:
Bugs:
Priority: medium
Discovered-by:
Assigned-to:

Patches_wireshark:
upstream_wireshark: needs-triage
precise/esm_wireshark: DNE
trusty_wireshark: needs-triage
vivid/stable-phone-overlay_wireshark: DNE
vivid/ubuntu-core_wireshark: DNE
xenial_wireshark: released (2.2.6+g32dac6a-2ubuntu0.16.04)
yakkety_wireshark: released (2.2.6+g32dac6a-2ubuntu0.16.10)
zesty_wireshark: released (2.2.6+g32dac6a-2ubuntu0.17.04)
devel_wireshark: released (2.2.6+g32dac6a-2)