epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles the reserved C/T value, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "1.12.0"
},
{
"introduced": "0"
},
{
"last_affected": "1.12.1"
},
{
"introduced": "0"
},
{
"last_affected": "1.12.2"
},
{
"introduced": "0"
},
{
"last_affected": "1.12.3"
},
{
"introduced": "0"
},
{
"last_affected": "1.12.4"
},
{
"introduced": "0"
},
{
"last_affected": "1.12.5"
},
{
"introduced": "0"
},
{
"last_affected": "1.12.6"
},
{
"introduced": "0"
},
{
"last_affected": "1.12.7"
},
{
"introduced": "0"
},
{
"last_affected": "1.12.8"
},
{
"introduced": "0"
},
{
"last_affected": "1.12.9"
},
{
"introduced": "0"
},
{
"last_affected": "1.12.10"
},
{
"introduced": "0"
},
{
"last_affected": "1.12.11"
},
{
"introduced": "0"
},
{
"last_affected": "2.0.0"
},
{
"introduced": "0"
},
{
"last_affected": "2.0.1"
},
{
"introduced": "0"
},
{
"last_affected": "2.0.2"
},
{
"introduced": "0"
},
{
"last_affected": "2.0.3"
}
]
}[
{
"signature_type": "Line",
"signature_version": "v1",
"target": {
"file": "epan/dissectors/packet-umts_fp.c"
},
"id": "CVE-2016-5353-fa069327",
"deprecated": false,
"source": "https://github.com/wireshark/wireshark/commit/7d7190695ce2ff269fdffb04e87139995cde21f4",
"digest": {
"line_hashes": [
"214280332996260385383521688449525799053",
"17214435169343378015251591527476682605",
"61903024807674800937076063391204924153",
"151420148621786498744893346605953559773",
"294319696459887575692834344546296318670",
"73668817943677106081876715240826978095",
"314951353908008355463988471852251799977"
],
"threshold": 0.9
}
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-5353.json"