CVE-2016-9375: Debian Linux

Medium severity, CVSS 5.9. EPSS: 1.6% chance of exploitation in the next 30 days.

In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the DTN dissector could go into an infinite loop, triggered by network traffic or a capture file. This was addressed in epan/dissectors/packet-dtn.c by checking whether SDNV evaluation was successful.

Affected products

  • Debian Debian Linux: version 8.0 only
  • Wireshark Wireshark: version 2.0.0 only; version 2.0.1 only; version 2.0.2 only; version 2.0.3 only; version 2.0.4 only; version 2.0.5 only; …

Published 2016-11-17. Last modified 2026-06-17.