PT-2008-5895 · Wireshark+1 · Wireshark+1

Shinnok

·

Published

2008-10-22

·

Updated

2018-10-11

·

CVE-2008-4682

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Wireshark versions 0.99.7 through 1.0.3
Description The issue allows remote attackers to cause a denial of service, resulting in the application aborting. This is achieved by providing a malformed Tamos CommView capture file, specifically a .ncf file, that contains an unknown or unexpected packet type, which triggers a failed assertion.
Recommendations For Wireshark versions 0.99.7 through 1.0.3, consider avoiding the use of .ncf files from untrusted sources until a fix is available. As a temporary workaround, restrict the processing of .ncf files to minimize the risk of exploitation.

Exploit

Fix

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-4682
RHSA-2009:0313
RHSA-2009_0313

Affected Products

Red Hat
Wireshark