CVE-2016-7176

Priority
Low
Description
epan/dissectors/packet-h225.c in the H.225 dissector in Wireshark 2.x
before 2.0.6 calls snprintf with one of its input buffers as the output
buffer, which allows remote attackers to cause a denial of service (copy
overlap and application crash) via a crafted packet.
References
Bugs
Package
Upstream:released (2.0.6)
Ubuntu 12.04 ESM (Precise Pangolin):DNE (precise was not-affected)
Ubuntu 14.04 LTS (Trusty Tahr):not-affected (1.10.6-1)
Ubuntu 16.04 LTS (Xenial Xerus):released (2.2.6+g32dac6a-2ubuntu0.16.04)
Ubuntu 17.10 (Artful Aardvark):not-affected (2.4.2-1)
Ubuntu 18.04 LTS (Bionic Beaver):not-affected
Ubuntu 18.10 (Cosmic Cuttlefish):not-affected
Patches:
Upstream:https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=6d8261994bb928b7e80e3a2478a3d939ea1ef373
More Information

Updated: 2018-06-26 05:00:36 UTC (commit 7799c934cca373482531a7b00e4dfe82302ceae5)