In Wireshark 3.0.0 to 3.0.6 and 2.6.0 to 2.6.12, the CMS dissector could crash. This was addressed in epan/dissectors/asn1/cms/packet-cms-template.c by ensuring that an object identifier is set to NULL after a ContentInfo dissection.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "3.0.7-1", "binary_name": "libwireshark-data" }, { "binary_version": "3.0.7-1", "binary_name": "libwireshark-dev" }, { "binary_version": "3.0.7-1", "binary_name": "libwireshark12" }, { "binary_version": "3.0.7-1", "binary_name": "libwireshark12-dbgsym" }, { "binary_version": "3.0.7-1", "binary_name": "libwiretap-dev" }, { "binary_version": "3.0.7-1", "binary_name": "libwiretap9" }, { "binary_version": "3.0.7-1", "binary_name": "libwiretap9-dbgsym" }, { "binary_version": "3.0.7-1", "binary_name": "libwscodecs2" }, { "binary_version": "3.0.7-1", "binary_name": "libwscodecs2-dbgsym" }, { "binary_version": "3.0.7-1", "binary_name": "libwsutil-dev" }, { "binary_version": "3.0.7-1", "binary_name": "libwsutil10" }, { "binary_version": "3.0.7-1", "binary_name": "libwsutil10-dbgsym" }, { "binary_version": "3.0.7-1", "binary_name": "tshark" }, { "binary_version": "3.0.7-1", "binary_name": "tshark-dbgsym" }, { "binary_version": "3.0.7-1", "binary_name": "wireshark" }, { "binary_version": "3.0.7-1", "binary_name": "wireshark-common" }, { "binary_version": "3.0.7-1", "binary_name": "wireshark-common-dbgsym" }, { "binary_version": "3.0.7-1", "binary_name": "wireshark-dev" }, { "binary_version": "3.0.7-1", "binary_name": "wireshark-doc" }, { "binary_version": "3.0.7-1", "binary_name": "wireshark-gtk" }, { "binary_version": "3.0.7-1", "binary_name": "wireshark-qt" }, { "binary_version": "3.0.7-1", "binary_name": "wireshark-qt-dbgsym" } ] }