PT-2011-2900 · Wireshark+1 · Wireshark+1

Gerald Combs

·

Published

2011-03-02

·

Updated

2017-09-19

·

CVE-2011-1141

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Wireshark versions 1.0.x, 1.2.0 through 1.2.14, 1.4.0 through 1.4.3
Description The issue allows remote attackers to cause a denial of service, specifically memory consumption, via certain LDAP filter strings. This can be achieved by using either a long LDAP filter string or an LDAP filter string containing many elements.
Recommendations For Wireshark versions 1.0.x, consider updating to a version outside of the affected range to resolve the issue. For Wireshark versions 1.2.0 through 1.2.14, consider updating to a version outside of the affected range to resolve the issue. For Wireshark versions 1.4.0 through 1.4.3, consider updating to a version outside of the affected range to resolve the issue. As a temporary workaround, consider restricting the use of long or complex LDAP filter strings to minimize the risk of exploitation.

Exploit

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-1141
DSA-2201-1
RHSA-2011:0369
RHSA-2011:0370
RHSA-2011_0369
RHSA-2011_0370

Affected Products

Red Hat
Wireshark