CVE-2016-7176

Priority
Description
epan/dissectors/packet-h225.c in the H.225 dissector in Wireshark 2.x
before 2.0.6 calls snprintf with one of its input buffers as the output
buffer, which allows remote attackers to cause a denial of service (copy
overlap and application crash) via a crafted packet.
Package
Upstream:released (2.0.6)
Ubuntu 12.04 ESM (Precise Pangolin):DNE (precise was not-affected)
Ubuntu 14.04 LTS (Trusty Tahr):not-affected (1.10.6-1)
Ubuntu 16.04 LTS (Xenial Xerus):released (2.2.6+g32dac6a-2ubuntu0.16.04)
Ubuntu 18.04 LTS (Bionic Beaver):not-affected
Ubuntu 18.10 (Cosmic Cuttlefish):not-affected
Patches:
Upstream:https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=6d8261994bb928b7e80e3a2478a3d939ea1ef373
More Information

Updated: 2018-10-31 21:24:24 UTC (commit cfa7cf69d76449ccff972ac22f40976a08d908c2)