Related Vulnerabilities: CVE-2021-39926  

It may be possible to make Wireshark before version 3.4.10 crash by injecting a malformed Bluetooth HCI_ISO packet onto the wire or by convincing someone to read a malformed packet trace file.

Severity Low

Remote Yes

Type Denial of service

Description

It may be possible to make Wireshark before version 3.4.10 crash by injecting a malformed Bluetooth HCI_ISO packet onto the wire or by convincing someone to read a malformed packet trace file.

AVG-2564 wireshark-cli 3.4.9-1 Unknown Vulnerable

https://www.wireshark.org/security/wnpa-sec-2021-08
https://gitlab.com/wireshark/wireshark/-/issues/17649
https://gitlab.com/wireshark/wireshark/-/merge_requests/4603
https://gitlab.com/wireshark/wireshark/-/commit/5077529f0c7c9e238568041e76d0f74b0863e283