3.3
CVSSv2

CVE-2012-2394

Published: 30/06/2012 Updated: 06/11/2012
CVSS v2 Base Score: 3.3 | Impact Score: 2.9 | Exploitability Score: 6.5
VMScore: 335
Vector: AV:A/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Wireshark 1.4.x prior to 1.4.13 and 1.6.x prior to 1.6.8 on the SPARC and Itanium platforms does not properly perform data alignment for a certain structure member, which allows remote malicious users to cause a denial of service (application crash) via a (1) ICMP or (2) ICMPv6 Echo Request packet.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

wireshark wireshark 1.4.0

wireshark wireshark 1.4.1

wireshark wireshark 1.4.4

wireshark wireshark 1.4.5

wireshark wireshark 1.4.8

wireshark wireshark 1.4.9

wireshark wireshark 1.4.12

wireshark wireshark 1.6.3

wireshark wireshark 1.6.7

wireshark wireshark 1.4.3

wireshark wireshark 1.4.7

wireshark wireshark 1.4.13

wireshark wireshark 1.6.2

wireshark wireshark 1.6.6

wireshark wireshark 1.4.2

wireshark wireshark 1.4.6

wireshark wireshark 1.4.10

wireshark wireshark 1.4.11

wireshark wireshark 1.6.1

wireshark wireshark 1.6.5

wireshark wireshark 1.6.0

wireshark wireshark 1.6.4

wireshark wireshark 1.6.8

Exploits

source: wwwsecurityfocuscom/bid/53653/info Wireshark is prone to a denial-of-service vulnerability An attacker can exploit this issue to crash the affected application, denying service to legitimate users Wireshark versions 160 through 167 and versions 140 through 1412 are vulnerable PoC: githubcom/offensive-secur ...