CVE-2018-11356: Null Pointer Dereference
In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the DNS dissector could crash. This was addressed in epan/dissectors/packet-dns.c by avoiding a NULL pointer dereference for an empty name in an SRV record.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-11356?
CVE-2018-11356 has a moderate severity rating due to the potential for denial of service through application crashes.
How do I fix CVE-2018-11356?
To fix CVE-2018-11356, upgrade to Wireshark version 2.6.1 or later, or to version 2.4.7 or later, or 2.2.15 or later.
Which versions of Wireshark are affected by CVE-2018-11356?
CVE-2018-11356 affects Wireshark versions 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14.
What does CVE-2018-11356 exploit within Wireshark?
CVE-2018-11356 exploits a NULL pointer dereference in the DNS dissector when handling empty names in SRV records.
Can CVE-2018-11356 affect Debian users?
Yes, CVE-2018-11356 can affect Debian users running the vulnerable versions of Wireshark on Debian GNU/Linux 8.0.