Multiple use-after-free vulnerabilities in epan/dissectors/packet-dec-dnart.c in the DEC DNA Routing Protocol dissector in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 allow remote attackers to cause a denial of service (application crash) via a crafted packet, related to the use of packet-scope memory instead of pinfo-scope memory.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0562
Reference (s):
- BID:71921
- URL: http://www.securityfocus.com/bid/71921
- http://advisories.mageia.org/MGASA-2015-0019.html
- http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html