{"schema_version":"1.7.5","id":"CVE-2017-13764","published":"2017-08-30T09:29:00.417Z","modified":"2026-07-08T15:10:28.491417Z","related":["openSUSE-SU-2024:11513-1"],"details":"In Wireshark 2.4.0, the Modbus dissector could crash with a NULL pointer dereference. This was addressed in epan/dissectors/packet-mbtcp.c by adding length validation.","affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/wireshark/wireshark","events":[{"introduced":"9be0fa500da594ed01baf3214642838d22811c90"},{"last_affected":"9be0fa500da594ed01baf3214642838d22811c90"}],"database_specific":{"cpe":"cpe:2.3:a:wireshark:wireshark:2.4.0:*:*:*:*:*:*:*","extracted_events":[{"introduced":"2.4.0"},{"last_affected":"2.4.0"}],"source":"CPE_STRING"}}],"versions":["2.4.0","wireshark-2.4.0","v2.4.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-13764.json"}},{"ranges":[{"type":"GIT","repo":"https://gitlab.com/wireshark/wireshark","events":[{"introduced":"9be0fa500da594ed01baf3214642838d22811c90"},{"last_affected":"9be0fa500da594ed01baf3214642838d22811c90"}],"database_specific":{"cpe":"cpe:2.3:a:wireshark:wireshark:2.4.0:*:*:*:*:*:*:*","extracted_events":[{"introduced":"2.4.0"},{"last_affected":"2.4.0"}],"source":"CPE_STRING"}}],"versions":["2.4.0","wireshark-2.4.0","v2.4.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-13764.json"}}],"references":[{"type":"WEB","url":"http://www.securityfocus.com/bid/100545"},{"type":"WEB","url":"http://www.securitytracker.com/id/1039254"},{"type":"WEB","url":"https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=b87ffbd12bddf64582c0a6e082b462744474de94"},{"type":"ADVISORY","url":"https://www.wireshark.org/security/wnpa-sec-2017-40.html"},{"type":"FIX","url":"https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=13925"}],"severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}