OSV-2020-629

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/wireshark/OSV-2020-629.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2020-629
Published
2020-07-01T00:00:21.373324Z
Modified
2022-04-13T04:14:54.501439Z
Summary
Heap-buffer-overflow in bytestring_to_str
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=19070

Crash type: Heap-buffer-overflow READ 1
Crash state:
bytestring_to_str
dissect_NUMBER_acf_lin
call_dissector_work
References

Affected packages

OSS-Fuzz / wireshark

Package

Name
wireshark
Purl
pkg:generic/wireshark

Affected ranges

Type
GIT
Repo
https://gitlab.com/wireshark/wireshark.git
Events

Affected versions

v3.*

v3.1.1
v3.1.2rc0
v3.2.0
v3.2.0rc0
v3.2.0rc1
v3.2.0rc2
v3.2.1
v3.2.10
v3.2.10rc0
v3.2.11
v3.2.11rc0
v3.2.12
v3.2.12rc0
v3.2.13
v3.2.13rc0
v3.2.14
v3.2.14rc0
v3.2.15
v3.2.15rc0
v3.2.16
v3.2.16rc0
v3.2.17
v3.2.17rc0
v3.2.18
v3.2.18rc0
v3.2.1rc0
v3.2.2
v3.2.2rc0
v3.2.3
v3.2.3rc0
v3.2.4
v3.2.4rc0
v3.2.5
v3.2.5rc0
v3.2.6
v3.2.6rc0
v3.2.7
v3.2.7rc0
v3.2.8
v3.2.8rc0
v3.2.9
v3.2.9rc0
v3.3.0rc0

wireshark-3.*

wireshark-3.2.0
wireshark-3.2.1
wireshark-3.2.10
wireshark-3.2.11
wireshark-3.2.12
wireshark-3.2.13
wireshark-3.2.14
wireshark-3.2.15
wireshark-3.2.16
wireshark-3.2.17
wireshark-3.2.18
wireshark-3.2.2
wireshark-3.2.3
wireshark-3.2.4
wireshark-3.2.5
wireshark-3.2.6
wireshark-3.2.7
wireshark-3.2.8
wireshark-3.2.9

Ecosystem specific

{
    "severity": "MEDIUM"
}