Infinite loop in Wireshark - CVE-2020-26575

 

Infinite loop in Wireshark - CVE-2020-26575

Published: October 6, 2020 / Updated: October 30, 2020


Vulnerability identifier: #VU47429
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2020-26575
CWE-ID: CWE-835
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to infinite loop within the Facebook Zero Protocol (aka FBZERO) dissector in epan/dissectors/packet-fbzero.c. A remote attacker can pass specially crafted traffic to the application, consume all available system resources and cause denial of service conditions.


Affected software

Wireshark
Gentoo Linux
openEuler
Fedora
wireshark (Alpine package)
wireshark
wireshark-debugsource
wireshark-debuginfo
wireshark-devel
wireshark-help

How to mitigate CVE-2020-26575

Install update from vendor's website.

Wireshark - update to 3.2.8
wireshark (Alpine package) - update to 3.4.0-r0
wireshark - update to 2.6.2-17
wireshark-debugsource - update to 2.6.2-17
wireshark-debuginfo - update to 2.6.2-17
wireshark-devel - update to 2.6.2-17
wireshark-help - update to 2.6.2-17
wireshark - addressed in versions 3.4.0-1.fc32, 3.4.0-1.fc33

External References

Related Security Bulletins