epan/dissectors/packet-pktap.c in the Ethernet dissector in Wireshark 2.x before 2.0.4 mishandles the packet-header data type, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
{
"unresolved_ranges": [
{
"vendor_product": "oracle:solaris",
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "11.3"
}
],
"cpes": [
"cpe:2.3:o:oracle:solaris:11.3:*:*:*:*:*:*:*"
]
}
]
}