CVE-2018-11358: Use After Free
Published May 22, 2018
·Updated
In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the Q.931 dissector could crash. This was addressed in epan/dissectors/packet-q931.c by avoiding a use-after-free after a malformed packet prevented certain cleanup.
Affected Software
7 affected componentsFixes available
debian/wireshark
2.6.20-0+deb10u42.6.20-0+deb10u73.4.10-0+deb11u14.0.6-1~deb12u14.0.10-1
Wireshark Wireshark>=2.2.0<=2.2.14
Wireshark Wireshark>=2.4.0<=2.4.6
Wireshark Wireshark=2.6.0
Debian Debian Linux=7.0
Debian Debian Linux=8.0
Debian Debian Linux=9.0
Remediation
Event History
May 22, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-11358?
CVE-2018-11358 has been rated as a medium severity vulnerability due to the potential for crashes caused by malformed packets.
2
How do I fix CVE-2018-11358?
To fix CVE-2018-11358, update Wireshark to version 2.6.20 or later, or to 3.4.10 or later.
3
Which versions of Wireshark are affected by CVE-2018-11358?
CVE-2018-11358 affects Wireshark versions 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14.
4
What type of vulnerability is CVE-2018-11358?
CVE-2018-11358 is a use-after-free vulnerability that can lead to a crash in Wireshark.
5
Is CVE-2018-11358 specific to a particular operating system?
CVE-2018-11358 impacts Wireshark running on multiple operating systems including various versions of Debian.