CVE-2018-11359
UnknownEPSS 2.86%
Last modified
CVE-2018-11359 is a vulnerability of currently unknown severity. In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the RRC dissector and other dissectors could crash. This was addressed in epan/proto.c by avoiding a NULL pointer dereference.. EPSS estimates a 2.86% chance of exploitation in the next 30 days.
Description
In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the RRC dissector and other dissectors could crash. This was addressed in epan/proto.c by avoiding a NULL pointer dereference.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Wireshark | Wireshark | >= 2.2.0, <= 2.2.14 |
| Wireshark | Wireshark | >= 2.4.0, <= 2.4.6 |
| Wireshark | Wireshark | 2.6.0 |
| Debian | Debian Linux | 8.0 |
References
- http://www.securityfocus.com/bid/104308Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1041036Third Party Advisory, VDB Entry
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14703Issue Tracking, Vendor Advisory
- https://lists.debian.org/debian-lts-announce/2019/01/msg00010.htmlMailing List, Third Party Advisory
- https://www.wireshark.org/security/wnpa-sec-2018-33.htmlVendor Advisory
- http://www.securityfocus.com/bid/104308Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1041036Third Party Advisory, VDB Entry
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14703Issue Tracking, Vendor Advisory
- https://lists.debian.org/debian-lts-announce/2019/01/msg00010.htmlMailing List, Third Party Advisory
- https://www.wireshark.org/security/wnpa-sec-2018-33.htmlVendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-11359?
In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the RRC dissector and other dissectors could crash. This was addressed in epan/proto.c by avoiding a NULL pointer dereference.
How severe is CVE-2018-11359?
Severity scoring for CVE-2018-11359 is pending analysis. The EPSS model estimates a 2.86% probability of exploitation in the next 30 days.
How do I fix CVE-2018-11359?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-11352The Wallabag application 2.2.3 to 2.3.2 is affected by one c…
- CVE-2018-11354In Wireshark 2.6.0, the IEEE 1905.1a dissector could crash. …
- CVE-2018-11355In Wireshark 2.6.0, the RTCP dissector could crash. This was…
- CVE-2018-11356In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the…
- CVE-2018-11357In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the…
- CVE-2018-11358In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the…
- CVE-2018-1136An issue was discovered in Moodle 3.x. An authenticated user…
- CVE-2018-11360In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the…
- CVE-2018-11361In Wireshark 2.6.0, the IEEE 802.11 protocol dissector could…
- CVE-2018-11362In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the…
- CVE-2018-11363jpeg_size in pdfgen.c in PDFGen before 2018-04-09 has a heap…
- CVE-2018-11364sav_parse_machine_integer_info_record in spss/readstat_sav_r…
Are you affected by CVE-2018-11359?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
