CVE-2019-13619 PUBLISHED

In Wireshark 3.0.0 to 3.0.2, 2.6.0 to 2.6.9, and 2.4.0 to 2.4.15, the ASN.1 BER dissector and related dissectors could crash. This was addressed in epan/asn1.c by properly restricting buffer increments.

EPSS 9.82% · 92.9th percentile

Risk Scores

EPSS Score
9.82%
92.9th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSwireshark2.0.2+ga16e22e-1, *, 0
Ubuntu:18.04:LTSwireshark0, 2.4.2-1, 2.4.3-1
Ubuntu:Pro:14.04:LTSwireshark1.10.5-1ubuntu1, 1.10.3-1, 0

Timeline

References

Open in Interactive Console →