PT-2010-3872 · Wireshark+1 · Wireshark+1

J. Oquendo

·

Published

2010-06-15

·

Updated

2017-09-19

·

CVE-2010-2286

CVSS v2.0

3.3

Low

VectorAV:A/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Wireshark versions 0.10.7 through 1.0.13 Wireshark versions 1.2.0 through 1.2.8
Description The issue allows remote attackers to cause a denial of service, resulting in an infinite loop, via unknown vectors. This is related to the SigComp Universal Decompressor Virtual Machine dissector in Wireshark.
Recommendations For Wireshark versions 0.10.7 through 1.0.13, update to a version outside of this range to resolve the issue. For Wireshark versions 1.2.0 through 1.2.8, update to a version outside of this range to resolve the issue. As a temporary workaround, consider disabling the SigComp Universal Decompressor Virtual Machine dissector until a patch is available.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-2286
DSA-2066-1
RHSA-2010:0625
RHSA-2010_0625

Affected Products

Red Hat
Wireshark