wnpa-sec-2012-04 · Wireshark ANSI A dissector crash

Summary

Name: Wireshark ANSI A dissector crash

Docid: wnpa-sec-2012-04

Date: March 27, 2012

Affected versions: 1.4.0 to 1.4.11, 1.6.0 to 1.6.5

Fixed versions: 1.4.12, 1.6.6

References: Wireshark bug 6823

Details

Description

The ANSI A dissector could dereference a NULL pointer and crash.

Impact

It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file.

Resolution

Upgrade to Wireshark 1.4.12, 1.6.6 or later.