First published: Thu Feb 27 2020(Updated: )
In Wireshark 3.2.0 to 3.2.1, the WireGuard dissector could crash. This was addressed in epan/dissectors/packet-wireguard.c by handling the situation where a certain data structure intentionally has a NULL value.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Wireshark Wireshark | >=3.2.0<=3.2.1 | |
openSUSE Leap | =15.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-9429.
The severity level of CVE-2020-9429 is high with a CVSS score of 7.5.
The WireGuard dissector crash vulnerability in Wireshark can be fixed by updating to a version where it has been addressed, such as version 3.2.2 and above.