CVE-2018-19625: Medium severity wireshark vulnerability
Published Nov 29, 2018
·Updated
In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the dissection engine could crash. This was addressed in epan/tvbuffcomposite.c by preventing a heap-based buffer over-read.
Affected Software
5 affected componentsFixes available
debian/wireshark
2.6.20-0+deb10u42.6.20-0+deb10u73.4.10-0+deb11u14.0.6-1~deb12u14.0.10-1
Wireshark Wireshark>=2.4.0<=2.4.10
Wireshark Wireshark>=2.6.0<=2.6.4
Debian Debian Linux=8.0
Debian Debian Linux=9.0
Remediation
Patch Available
Event History
Nov 29, 2018
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-19625?
CVE-2018-19625 is classified as a medium severity vulnerability due to potential crashes caused by the dissection engine in Wireshark.
2
How do I fix CVE-2018-19625?
To fix CVE-2018-19625, update to Wireshark version 2.6.20 or later, or to 3.4.10 or later.
3
Which versions of Wireshark are affected by CVE-2018-19625?
Wireshark versions 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10 are affected by CVE-2018-19625.
4
What causes the issue in CVE-2018-19625?
CVE-2018-19625 is caused by a heap-based buffer over-read in the dissection engine of Wireshark.
5
Who is impacted by CVE-2018-19625?
Users of vulnerable Wireshark versions, primarily on Debian systems, are impacted by CVE-2018-19625.