PT-2008-2671 · Wireshark+2 · Wireshark+2

Publicado

2008-02-28

·

Atualizado

2018-10-11

·

CVE-2008-1072

CVSS v2.0

4.7

Média

VetorAV:L/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Wireshark versions 0.6.0 through 0.99.7
Description The issue allows remote attackers to cause a denial of service, potentially leading to a crash or excessive memory consumption, via a malformed packet. This might be related to a bug in the Cairo library.
Recommendations For Wireshark versions 0.6.0 through 0.99.7, consider updating to a version outside of this range to resolve the issue. As a temporary workaround, restrict the use of the TFTP dissector to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2008-1072
RHSA-2008:0890
RHSA-2008_0890

Produtos afetados

Cairo
Red Hat
Wireshark