CVE-2018-5336: Buffer Overflow
In Wireshark 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11, the JSON, XML, NTP, XMPP, and GDB dissectors could crash. This was addressed in epan/tvbparse.c by limiting the recursion depth.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/wiresharkto a version that resolves this vulnerability.Fixed in 2.6.20-0+deb10u4Fixed in 2.6.20-0+deb10u7Fixed in 3.4.10-0+deb11u1Fixed in 4.0.6-1~deb12u1Fixed in 4.0.10-1
Event History
Frequently Asked Questions
What is the severity of CVE-2018-5336?
CVE-2018-5336 is designated as high severity due to the potential for denial of service when parsing specific packet types.
How do I fix CVE-2018-5336?
To fix CVE-2018-5336, upgrade Wireshark to version 2.4.4 or later, or to the fixed versions listed for your distribution.
Which versions of Wireshark are affected by CVE-2018-5336?
CVE-2018-5336 affects Wireshark versions 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11.
Are there any known exploits for CVE-2018-5336?
As of now, there are no publicly known exploits specifically targeting CVE-2018-5336.
What components of Wireshark are impacted by CVE-2018-5336?
The components affected by CVE-2018-5336 include the JSON, XML, NTP, XMPP, and GDB dissectors.