Security Advisory

CVE-2018-14340

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-07-19 02:00:00
Last updated 2024-08-05 09:21:41
Assigner mitre
State PUBLISHED

Description

In Wireshark 2.6.0 to 2.6.1, 2.4.0 to 2.4.7, and 2.2.0 to 2.2.15, dissectors that support zlib decompression could crash. This was addressed in epan/tvbuff_zlib.c by rejecting negative lengths to avoid a buffer over-read.