CVE-2014-6426

Publication date 20 September 2014

Last updated 24 July 2024


Ubuntu priority

The dissect_hip_tlv function in epan/dissectors/packet-hip.c in the HIP dissector in Wireshark 1.12.x before 1.12.1 does not properly handle a NULL tree, which allows remote attackers to cause a denial of service (infinite loop) via a crafted packet.

Status

Package Ubuntu Release Status
wireshark 14.10 utopic
Fixed 1.12.1+g01b65bf-2~ubuntu14.10.1
14.04 LTS trusty
Not affected
12.04 LTS precise
Not affected
10.04 LTS lucid Ignored end of life