3.3
CVSSv2

CVE-2012-3825

Published: 30/06/2012 Updated: 19/09/2017
CVSS v2 Base Score: 3.3 | Impact Score: 2.9 | Exploitability Score: 6.5
VMScore: 335
Vector: AV:A/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Multiple integer overflows in Wireshark 1.4.x prior to 1.4.13 and 1.6.x prior to 1.6.8 allow remote malicious users to cause a denial of service (infinite loop) via vectors related to the (1) BACapp and (2) Bluetooth HCI dissectors, a different vulnerability than CVE-2012-2392.

Most Upvoted Vulmon Research Post

There is no Researcher post for this vulnerability
Would you like to share something about it? Sign up now to share your knowledge with the community.
Vulnerable Product Search on Vulmon Subscribe to Product

wireshark wireshark 1.4.5

wireshark wireshark 1.4.7

wireshark wireshark 1.4.12

wireshark wireshark 1.4.13

wireshark wireshark 1.6.6

wireshark wireshark 1.6.7

wireshark wireshark 1.4.11

wireshark wireshark 1.4.6

wireshark wireshark 1.4.0

wireshark wireshark 1.4.4

wireshark wireshark 1.6.4

wireshark wireshark 1.6.5

wireshark wireshark 1.4.9

wireshark wireshark 1.4.3

wireshark wireshark 1.4.2

wireshark wireshark 1.4.1

wireshark wireshark 1.6.2

wireshark wireshark 1.6.3

wireshark wireshark 1.4.8

wireshark wireshark 1.4.10

wireshark wireshark 1.6.0

wireshark wireshark 1.6.1

Vendor Advisories

Synopsis Moderate: wireshark security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Topic Updated wireshark packages that fix multiple security issues, several bugs,and add various enhancements are now available for Red Hat EnterpriseLinux 6The Red Hat Security Response Team ha ...
Two flaws were found in Wireshark If Wireshark read a malformed packet off a network or opened a malicious dump file, it could crash or, possibly, execute arbitrary code as the user running Wireshark (CVE-2013-3559 , CVE-2013-4083 ) Several denial of service flaws were found in Wireshark Wireshark could crash or stop responding if it read a malf ...

Exploits

source: wwwsecurityfocuscom/bid/53651/info Wireshark is prone to multiple denial-of-service vulnerabilities An attacker can exploit these issues to crash the affected application, denying service to legitimate users Wireshark versions 160 through 167 and versions 140 through 1412 are vulnerable PoC: githubcom/offe ...