CVE-2017-6472: High severity Wireshark Wireshark vulnerability
In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is an RTMPT dissector infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-rtmpt.c by properly incrementing a certain sequence value.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-6472?
CVE-2017-6472 has been classified as a medium severity vulnerability due to the potential for an infinite loop that could disrupt service.
How do I fix CVE-2017-6472?
To fix CVE-2017-6472, update Wireshark to version 2.2.5 or later, or version 2.0.11 or later.
What impact does CVE-2017-6472 have on affected systems?
CVE-2017-6472 can cause a denial of service condition due to an infinite loop in the RTMPT dissector triggered by malformed input.
Which versions of Wireshark are affected by CVE-2017-6472?
CVE-2017-6472 affects Wireshark versions from 2.0.0 to 2.0.10 and from 2.2.0 to 2.2.4.
Is CVE-2017-6472 specific to any operating systems?
CVE-2017-6472 is particularly noted in Debian Linux 8.0 but may affect other systems running the vulnerable versions of Wireshark.