Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Chris Maixner

#33341de 53,635
7.8CVSS total
Vulnerabilidades · 1
PT-2017-16832
7.8
2017-02-17
Wireshark · Wireshark · CVE-2017-6014
**Name of the Vulnerable Software and Affected Versions** Wireshark versions 2.2.4 and earlier **Description** A crafted or malformed STANAG 4607 capture file can cause an infinite loop and memory exhaustion. This occurs when the packet size field in a packet header is null, resulting in continuous attempts to read the same zero-length packet, which quickly exhausts all system memory. **Recommendations** For Wireshark versions 2.2.4 and earlier, consider updating to a newer version to mitigate the risk of memory exhaustion due to malformed capture files. As a temporary workaround, avoid opening crafted or malformed STANAG 4607 capture files until a patch is available.