CVE-2014-8712
The build_expert_data function in epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 1.10.x before 1.10.11 and 1.12.x before 1.12.2 does not properly initialize a data structure, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
Date published : 2014-11-22
http://www.securityfocus.com/bid/71071
http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html