4.3
CVSSv2

CVE-2012-3548

Published: 30/08/2012 Updated: 19/09/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

The dissect_drda function in epan/dissectors/packet-drda.c in Wireshark 1.6.x up to and including 1.6.10 and 1.8.x up to and including 1.8.2 allows remote malicious users to cause a denial of service (infinite loop and CPU consumption) via a small value for a certain length field in a capture file.

Vulnerable Product Search on Vulmon Subscribe to Product

wireshark wireshark 1.8.0

wireshark wireshark 1.8.1

wireshark wireshark 1.8.2

wireshark wireshark 1.6.2

wireshark wireshark 1.6.3

wireshark wireshark 1.6.4

wireshark wireshark 1.6.5

wireshark wireshark 1.6.6

wireshark wireshark 1.6.1

wireshark wireshark 1.6.10

wireshark wireshark 1.6.9

wireshark wireshark 1.6.0

wireshark wireshark 1.6.7

wireshark wireshark 1.6.8

Vendor Advisories

Debian Bug report logs - #686225 wireshark: CVE-2012-3548 Package: wireshark; Maintainer for wireshark is Balint Reczey <rbalint@ubuntucom>; Source for wireshark is src:wireshark (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@inutilorg> Date: Thu, 30 Aug 2012 06:57:02 UTC Severity: normal Tags: fixed-u ...