CVE-2020-25866: Null Pointer Dereference
In Wireshark 3.2.0 to 3.2.6 and 3.0.0 to 3.0.13, the BLIP protocol dissector has a NULL pointer dereference because a buffer was sized for compressed (not uncompressed) messages. This was addressed in epan/dissectors/packet-blip.c by allowing reasonable compression ratios and rejecting ZIP bombs.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2020-25866?
CVE-2020-25866 is a vulnerability in Wireshark versions 3.2.0 to 3.2.6 and 3.0.0 to 3.0.13 where the BLIP protocol dissector has a NULL pointer dereference.
How severe is CVE-2020-25866?
CVE-2020-25866 has a severity rating of 7.5 (high).
Which software versions are affected by CVE-2020-25866?
Wireshark versions 3.2.0 to 3.2.6 and 3.0.0 to 3.0.13 are affected by CVE-2020-25866.
How can CVE-2020-25866 be fixed?
CVE-2020-25866 can be fixed by updating Wireshark to a version that includes the fix, such as version 3.0.14 or 3.2.7.
Where can I find more information about CVE-2020-25866?
More information about CVE-2020-25866 can be found at the following references: [Link 1](http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00035.html), [Link 2](http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00038.html), [Link 3](https://gitlab.com/wireshark/wireshark/-/commit/4a948427100b6c109f4ec7b4361f0d2aec5e5c3f).