In Wireshark 2.4.0 to 2.4.2 and 2.2.0 to 2.2.10, the CIP Safety dissector could crash. This was addressed in epan/dissectors/packet-cipsafety.c by validating the packet length.
https://www.wireshark.org/security/wnpa-sec-2017-49.html
https://www.exploit-db.com/exploits/43233/
https://www.debian.org/security/2017/dsa-4060
https://lists.debian.org/debian-lts-announce/2017/12/msg00029.html