CVE-2017-15193: Wireshark

High severity, CVSS 7.5. EPSS: 2.7% chance of exploitation in the next 30 days.

In Wireshark 2.4.0 to 2.4.1 and 2.2.0 to 2.2.9, the MBIM dissector could crash or exhaust system memory. This was addressed in epan/dissectors/packet-mbim.c by changing the memory-allocation approach.

Affected products

  • Wireshark Wireshark: version 2.2.0 only; version 2.2.1 only; version 2.2.2 only; version 2.2.3 only; version 2.2.4 only; version 2.2.5 only; …

Published 2017-10-10. Last modified 2026-06-17.