Wireshark Updates
3484Warning Date
Severity Level
Warning Number
Target Sector
24 September, 2020
● Medium
2020-1834
All
Description:
Wireshark has released security updates to address a vulnerabilities in the following versions:
- From 3.2.0 to 3.2.6
- From 3.0.0 to 3.0.13
- From 2.6.0 to 2.6.20
Threats:
Attacker could exploit these vulnerabilities by crashing TCP dissector or MIME Multipart dissector or BLIP dissector by Injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file.
Best practice and Recommendations:
The CERT team encourages users to review Wireshark security advisory and apply the necessary updates: