In Wireshark 2.2.4 and earlier, a crafted or malformed STANAG 4607 capture file will cause an infinite loop and memory exhaustion. If the packet size field in a packet header is null, the offset to read from will not advance, causing continuous attempts to read the same zero length packet. This will quickly exhaust all system memory.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-826-1 | wireshark security update |
Debian DSA |
DSA-3811-1 | wireshark security update |
EUVD |
EUVD-2017-15082 | In Wireshark 2.2.4 and earlier, a crafted or malformed STANAG 4607 capture file will cause an infinite loop and memory exhaustion. If the packet size field in a packet header is null, the offset to read from will not advance, causing continuous attempts to read the same zero length packet. This will quickly exhaust all system memory. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T15:18:49.363Z
Reserved: 2017-02-16T00:00:00
Link: CVE-2017-6014
No data.
Status : Deferred
Published: 2017-02-17T07:59:00.967
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-6014
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD