7.5
CVSSv2

CVE-2010-4300

Published: 26/11/2010 Updated: 19/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Heap-based buffer overflow in the dissect_ldss_transfer function (epan/dissectors/packet-ldss.c) in the LDSS dissector in Wireshark 1.2.0 up to and including 1.2.12 and 1.4.0 up to and including 1.4.1 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via an LDSS packet with a long digest line that triggers memory corruption.

Vulnerable Product Search on Vulmon Subscribe to Product

wireshark wireshark 1.2.9

wireshark wireshark 1.2.10

wireshark wireshark 1.2.6

wireshark wireshark 1.2.1

wireshark wireshark 1.2.3

wireshark wireshark 1.2.4

wireshark wireshark 1.2.12

wireshark wireshark 1.4.0

wireshark wireshark 1.2.0

wireshark wireshark 1.2.7

wireshark wireshark 1.4.1

wireshark wireshark 1.2.8

wireshark wireshark 1.2.5

wireshark wireshark 1.2.2

wireshark wireshark 1.2.11

Exploits

source: wwwsecurityfocuscom/bid/44987/info Wireshark is prone to a buffer-overflow vulnerability Exploiting this issue may allow attackers to crash the application and deny service to legitimate users Attackers may also execute arbitrary code in the context of vulnerable users running the application This issue affects Wireshark 12 ...