PT-2007-7016 · Wireshark+1 · Wireshark+1

Published

2007-11-23

·

Updated

2018-10-15

·

CVE-2007-6117

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Wireshark versions 0.10.14 through 0.99.6
Description The issue is related to an unspecified vulnerability in the HTTP dissector, which can be exploited by remote attackers using crafted chunked messages. This could lead to a denial of service, causing the application to crash, and potentially allow the execution of arbitrary code.
Recommendations For versions 0.10.14 through 0.99.6, update to a version that includes a fix for this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-6117
DSA-1414-1
DTSA-92-1
RHSA-2008:0058
RHSA-2008:0059
RHSA-2008_0058

Affected Products

Red Hat
Wireshark