PT-2011-4846 · Wireshark · Wireshark
Vincent Danen
·
Published
2011-11-03
·
Updated
2017-09-19
·
CVE-2011-4101
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Wireshark versions 1.4.0 through 1.4.9
Wireshark versions 1.6.x before 1.6.3
Description
The issue allows remote attackers to cause a denial of service, resulting in a NULL pointer dereference and application crash, via a malformed packet. This is due to a problem in the dissect infiniband common function in the Infiniband dissector.
Recommendations
For Wireshark versions 1.4.0 through 1.4.9, update to a version outside of this range to resolve the issue.
For Wireshark versions 1.6.x before 1.6.3, update to version 1.6.3 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Wireshark