Skip to main content

Wireshark Multiple Vulnerabilities

Last Update Date: 12 Sep 2013 10:48 Release Date: 12 Sep 2013 3291 Views

RISK: Medium Risk

TYPE: Security software and application - Security Software & Appliance

TYPE: Security Software & Appliance

Multiple vulnerabilities have been identified in Wireshark. A remote user can cause denial of service conditions, and send specially crafted data to cause the target Wireshark service to crash or hang.

  1. The Bluetooth HCI ACL dissector, NBAP dissector, MQ dissector, LDAP dissector and Netmon file parser may crash.
  2. The ASSA R3 dissector may enter an infinite loop.
  3. A buffer overflow may occur in the RTPS dissector.

Impact

  • Denial of Service

System / Technologies affected

  • Versions prior to 1.10.2
  • Versions prior to 1.8.10

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • The vendor has issued a fix (1.8.10, 1.10.2).

Vulnerability Identifier


Source


Related Link