CVE-2020-26575 PUBLISHED

In Wireshark through 3.2.7, the Facebook Zero Protocol (aka FBZERO) dissector could enter an infinite loop. This was addressed in epan/dissectors/packet-fbzero.c by correcting the implementation of offset advancement.

EPSS 2.23% · 84.4th percentile

Risk Scores

EPSS Score
2.23%
84.4th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSwireshark2.6.10-1~ubuntu16.04.0+esm1, 2.6.10-1~ubuntu16.04.0+esm2, 0
Ubuntu:Pro:18.04:LTSwireshark2.6.10-1~ubuntu18.04.0+esm2, 2.6.10-1~ubuntu18.04.0+esm1, 2.6.10-1~ubuntu18.04.0
Ubuntu:Pro:20.04:LTSwireshark3.2.3-1ubuntu0.1~esm2, 0, 3.0.5-1
Ubuntu:Pro:14.04:LTSwireshark2.6.3-1~ubuntu14.04.1, 1.12.1+g01b65bf-4+deb8u11ubuntu0.14.04.1, 1.10.6-1

Timeline

References

Open in Interactive Console →