Related Vulnerabilities: CVE-2020-11647  

A stack overflow has been found in the fAbstractSyntaxNType function of the BACApp dissector of Wireshark versions prior to 3.2.3, which could be triggered by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file.

Severity Critical

Remote Yes

Type Arbitrary code execution

Description

A stack overflow has been found in the fAbstractSyntaxNType function of the BACApp dissector of Wireshark versions prior to 3.2.3, which could be triggered by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file.

AVG-1129 wireshark-cli 3.2.2-1 3.2.3-1 Critical Fixed

https://www.wireshark.org/security/wnpa-sec-2020-07
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=16474