Bugzilla – Bug 1211709
VUL-0: CVE-2023-0666: wireshark: RTPS dissector crash
Last modified: 2023-05-31 07:56:39 UTC
CVE-2023-0666 Summary Name: RTPS dissector crash Docid: wnpa-sec-2023-18 Date: May 24, 2023 Affected versions: 4.0.0 to 4.0.5 Fixed versions: 4.0.6 References: Wireshark issue 19085. CVE-2023-0666. Details Description The RTPS dissector could crash. Discovered by Austin Hackers Anonymous! Impact It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. Resolution Upgrade to Wireshark 4.0.6 or later. References: https://gitlab.com/wireshark/wireshark/-/issues/19085 https://www.wireshark.org/security/wnpa-sec-2023-18
SLE not affected, closing.