CVE-2015-2187

Priority
Description
The dissect_atn_cpdlc_heur function in
asn1/atn-cpdlc/packet-atn-cpdlc-template.c in the ATN-CPDLC dissector in
Wireshark 1.12.x before 1.12.4 does not properly follow the TRY/ENDTRY code
requirements, which allows remote attackers to cause a denial of service
(stack memory corruption and application crash) via a crafted packet.
Bugs
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=9952
https://bugs.launchpad.net/bugs/1440202
Notes
Package
Upstream:released (1.12.4)
Ubuntu 14.04 ESM (Trusty Tahr):not-affected (1.10.6-1)
More Information

Updated: 2020-09-10 04:40:06 UTC (commit 81a23a978c4436cd99e1d040e9e73e9146876281)