wnpa-sec-2012-07 · Wireshark MP2T memory allocation flaw

Summary

Name: Wireshark MP2T memory allocation flaw

Docid: wnpa-sec-2012-07

Date: March 27, 2012

Affected versions: 1.4.0 to 1.4.11, 1.6.0 to 1.6.5

Fixed versions: 1.4.12, 1.6.6

References: Wireshark bug 6833

Details

Description

The MP2T dissector could try to allocate too much memory and crash.

Impact

It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file.

Resolution

Upgrade to Wireshark 1.4.12, 1.6.6 or later.