In Wireshark 3.2.0 to 3.2.7, the GQUIC dissector could crash. This was addressed in epan/dissectors/packet-gquic.c by correcting the implementation of offset advancement.
{ "vanir_signatures": [ { "digest": { "function_hash": "93666439817911880652568707146755693755", "length": 9423.0 }, "id": "CVE-2020-28030-8bf9ffc7", "source": "https://gitlab.com/wireshark/wireshark@b287e7165e8aa89cde6ae37e7c257c5d87d16b9b", "signature_type": "Function", "signature_version": "v1", "target": { "file": "epan/dissectors/packet-gquic.c", "function": "dissect_gquic_tag" }, "deprecated": false }, { "digest": { "threshold": 0.9, "line_hashes": [ "280974726505164498832962824171895621958", "319833764394839539996018421668773904580", "102435623945195054836624030565028356176", "129511524565700081700416126136415642483", "28107926798278441138880117578288969157", "222716997940042778667677425768016096569", "99556750202311595969094874610977454676", "237055850321980614802788386596803708312", "48325267683462326833116598420950938179", "303855810784359905657086906803144814681", "19642233341739342455331457094249227014", "245555687721842950819514724815158948132", "110354187581941810161087703105666630284", "246555755249623061771063583115586030231", "91800038486104211351087112837691629558", "278492313177756171993250479778510720043" ] }, "id": "CVE-2020-28030-9f6d66c8", "source": "https://gitlab.com/wireshark/wireshark@b287e7165e8aa89cde6ae37e7c257c5d87d16b9b", "signature_type": "Line", "signature_version": "v1", "target": { "file": "epan/dissectors/packet-gquic.c" }, "deprecated": false }, { "digest": { "function_hash": "218040539303201998126225013104010039284", "length": 25944.0 }, "id": "CVE-2020-28030-edec86ca", "source": "https://gitlab.com/wireshark/wireshark@b287e7165e8aa89cde6ae37e7c257c5d87d16b9b", "signature_type": "Function", "signature_version": "v1", "target": { "file": "epan/dissectors/packet-gquic.c", "function": "proto_register_gquic" }, "deprecated": false } ] }