ZeroHour

CVE-2019-13619

PoC
CVSS 3.1
7.5 high
EPSS
6%p93
Published
()
Modified
Description

In Wireshark 3.0.0 to 3.0.2, 2.6.0 to 2.6.9, and 2.4.0 to 2.4.15, the ASN.1 BER dissector and related dissectors could crash. This was addressed in epan/asn1.c by properly restricting buffer increments.

Vendors
wiresharkfedoraprojectcanonicaldebianopensuse
Products
wireshark, fedora, ubuntu linux, debian linux, leap
Weakness
CWE-119
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.