CVE-2016-7176

Priority
Description
epan/dissectors/packet-h225.c in the H.225 dissector in Wireshark 2.x
before 2.0.6 calls snprintf with one of its input buffers as the output
buffer, which allows remote attackers to cause a denial of service (copy
overlap and application crash) via a crafted packet.
Notes
Package
Upstream:released (2.0.6)
Ubuntu 12.04 ESM (Precise Pangolin):DNE (precise was not-affected)
Ubuntu 14.04 ESM (Trusty Tahr):not-affected ([1.10.6-1])
Ubuntu 16.04 LTS (Xenial Xerus):released (2.2.6+g32dac6a-2ubuntu0.16.04)
Ubuntu 18.04 LTS (Bionic Beaver):not-affected
Patches:
Upstream:https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=6d8261994bb928b7e80e3a2478a3d939ea1ef373
More Information

Updated: 2020-01-29 19:56:32 UTC (commit 768ceb2fdee6790d707d0f681e1b54916744af1e)