wnpa-sec-2021-05 · DVB-S2-BB dissector infinite loop

Summary

Name: DVB-S2-BB dissector infinite loop

Docid: wnpa-sec-2021-05

Date: June 2, 2021

Affected versions: 3.4.0 to 3.4.5

Fixed versions: 3.4.6

References:
CVE-2021-22222

Details

Description

The DVB-S2-BB dissector could go into an infinite loop.

Impact

It may be possible to make Wireshark consume excessive CPU resources by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file.

Resolution

Upgrade to Wireshark 3.4.6 or later.