First published: Fri Dec 11 2020(Updated: )
Memory leak in the dissection engine in Wireshark 3.4.0 allows denial of service via packet injection or crafted capture file.
Credit: cve@gitlab.com
Affected Software | Affected Version | How to fix |
---|---|---|
Wireshark Wireshark | =3.4.0 | |
Fedora | =32 | |
Fedora | =33 | |
Oracle Sun ZFS Storage Appliance Kit | =8.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-26419 is classified as medium due to its potential for denial of service.
To fix CVE-2020-26419, upgrade to a later version of Wireshark that addresses this memory leak vulnerability.
CVE-2020-26419 affects Wireshark version 3.4.0 and specific versions of Fedora and Oracle ZFS Storage Appliance Kit.
CVE-2020-26419 can be exploited through packet injection or crafted capture files to cause a denial of service.
CVE-2020-26419 was disclosed in November 2020, affecting users of Wireshark 3.4.0.