USN-3986-1: Wireshark vulnerabilities
It was discovered that Wireshark improperly handled certain input. A remote or local attacker could cause Wireshark to crash by injecting malform packets onto the wire or convincing someone to read a malformed packet trace file.
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the severity of USN-3986-1?
USN-3986-1 is classified as a high-severity vulnerability due to the potential for crashes caused by malformed packets.
How do I fix USN-3986-1?
To fix USN-3986-1, update your Wireshark and related packages to version 2.6.8-1~ubuntu18.10.0 or later.
What systems are affected by USN-3986-1?
USN-3986-1 affects Ubuntu 18.10 and earlier versions of Ubuntu, including 18.04 and 16.04.
Can USN-3986-1 be exploited remotely?
Yes, USN-3986-1 can be exploited by a remote attacker through the injection of malformed packets.
Is there a workaround for USN-3986-1?
Currently, the best mitigation for USN-3986-1 is to apply the available patches or avoid using untrusted packet capture files.