CVE-2017-9766: Debian Linux

High severity, CVSS 7.5. EPSS: 3.4% chance of exploitation in the next 30 days.

In Wireshark 2.2.7, PROFINET IO data with a high recursion depth allows remote attackers to cause a denial of service (stack exhaustion) in the dissect_IODWriteReq function in plugins/profinet/packet-dcerpc-pn-io.c.

Affected products

  • Debian Debian Linux: version 8.0 only
  • Wireshark Wireshark: version 2.2.7 only

Published 2017-06-21. Last modified 2026-06-17.