epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles the reserved C/T value, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
{ "vanir_signatures": [ { "digest": { "line_hashes": [ "214280332996260385383521688449525799053", "17214435169343378015251591527476682605", "61903024807674800937076063391204924153", "151420148621786498744893346605953559773", "294319696459887575692834344546296318670", "73668817943677106081876715240826978095", "314951353908008355463988471852251799977" ], "threshold": 0.9 }, "signature_type": "Line", "source": "https://github.com/wireshark/wireshark/commit/7d7190695ce2ff269fdffb04e87139995cde21f4", "id": "CVE-2016-5353-fa069327", "target": { "file": "epan/dissectors/packet-umts_fp.c" }, "deprecated": false, "signature_version": "v1" } ] }