wnpa-sec-2022-06 · F5 Ethernet Trailer dissector infinite loop
Name: F5 Ethernet Trailer dissector infinite loop
Date: September 7, 2022
Affected versions: 3.6.0 to 3.6.7, 3.4.0 to 3.4.15
Fixed versions: 3.6.8, 3.4.16
The F5 Ethernet Trailer dissector could go into an infinite loop. Discovered by Jason Cohen.
It may be possible to make Wireshark consume excessive CPU resources by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file.
Upgrade to Wireshark 3.6.8, 3.4.16 or later.