CVE-2017-9349: High severity Wireshark Wireshark vulnerability
Published Jun 2, 2017
·Updated
In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the DICOM dissector has an infinite loop. This was addressed in epan/dissectors/packet-dcm.c by validating a length value.
Affected Software
3 affected components
Wireshark Wireshark>=2.0.0<=2.0.12
Wireshark Wireshark>=2.2.0<=2.2.6
Debian Debian Linux=8.0
Remediation
Patch Available
Event History
Jun 2, 2017
CVE Published
via MITRE·05:04 AM
Data Sourced
via MITRE·05:04 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-9349?
CVE-2017-9349 is classified as a moderate severity vulnerability due to the potential for denial-of-service from the infinite loop.
2
How do I fix CVE-2017-9349?
To fix CVE-2017-9349, upgrade Wireshark to a version later than 2.2.6 or 2.0.12.
3
What software is affected by CVE-2017-9349?
CVE-2017-9349 affects Wireshark versions 2.0.0 to 2.0.12 and 2.2.0 to 2.2.6.
4
Is there a risk of exploitation for CVE-2017-9349?
Yes, CVE-2017-9349 can be exploited by sending specially crafted DICOM packets to trigger the infinite loop.
5
Who discovered CVE-2017-9349?
CVE-2017-9349 was reported through various security channels, including incident reports from security researchers.