CVE-2016-9372: Wireshark
Medium severity, CVSS 5.9. EPSS: 2.1% chance of exploitation in the next 30 days.
In Wireshark 2.2.0 to 2.2.1, the Profinet I/O dissector could loop excessively, triggered by network traffic or a capture file. This was addressed in plugins/profinet/packet-pn-rtc-one.c by rejecting input with too many I/O objects.
Affected products
- Wireshark Wireshark: version 2.2.0 only; version 2.2.1 only
Published 2016-11-17. Last modified 2026-06-17.