First published: Thu Jan 16 2020(Updated: )
In Wireshark 3.0.x before 3.0.8, the BT ATT dissector could crash. This was addressed in epan/dissectors/packet-btatt.c by validating opcodes.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Wireshark Wireshark | >=3.0.0<3.0.8 | |
Debian GNU/Linux | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-7045 is classified as a medium severity vulnerability due to the potential for the Wireshark application to crash.
To fix CVE-2020-7045, upgrade Wireshark to version 3.0.8 or later.
CVE-2020-7045 affects Wireshark versions prior to 3.0.8, specifically the 3.0.x series.
Yes, CVE-2020-7045 affects Debian Linux 9.0 when running an affected version of Wireshark.
CVE-2020-7045 impacts the BT ATT dissector component of Wireshark.