CVE-2018-18225 PUBLISHED

In Wireshark 2.6.0 to 2.6.3, the CoAP dissector could crash. This was addressed in epan/dissectors/packet-coap.c by ensuring that the piv length is correctly computed.

EPSS 1.18% · 78.6th percentile

Risk Scores

EPSS Score
1.18%
78.6th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSwireshark2.6.3-1~ubuntu18.04.1, 2.4.5-1, 2.4.4-1
Ubuntu:14.04:LTSwireshark1.12.1+g01b65bf-4+deb8u11ubuntu0.14.04.1, 2.6.3-1~ubuntu14.04.1, 0
Ubuntu:16.04:LTSwireshark2.6.3-1~ubuntu16.04.1, 2.2.6+g32dac6a-2ubuntu0.16.04, 2.0.2+ga16e22e-1

Timeline

References

Open in Interactive Console →