Published: 23/11/2007 Updated: 15/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple buffer overflows in Wireshark (formerly Ethereal) 0.99.0 up to and including 0.99.6 allow remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via (1) the SSL dissector or (2) the iSeries (OS/400) Communication trace file parser.

Most Upvoted Vulmon Research Post

There is no Researcher post for this vulnerability
Would you like to share something about it? Sign up now to share your knowledge with the community.
Vulnerable Product Search on Vulmon Subscribe to Product

wireshark wireshark 0.99

wireshark wireshark 0.99.0

wireshark wireshark 0.99.1

wireshark wireshark 0.99.2

wireshark wireshark 0.99.3

wireshark wireshark 0.99.6

wireshark wireshark 0.99.4

wireshark wireshark 0.99.5

Vendor Advisories

Several remote vulnerabilities have been discovered in the Wireshark network traffic analyzer, which may lead to denial of service or execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2007-6114 Stefan Esser discovered a buffer overflow in the SSL dissector Fabiodds discove ...
Debian Bug report logs - #452381 wireshark: multiple security issues CVE-2007-6111 - CVE-2007-6121 Package: wireshark; Maintainer for wireshark is Balint Reczey <rbalint@ubuntucom>; Source for wireshark is src:wireshark (PTS, buildd, popcon) Reported by: Nico Golde <nion@debianorg> Date: Thu, 22 Nov 2007 12:33:03 U ...