5.4
CVSSv2

CVE-2012-4298

Published: 16/08/2012 Updated: 19/09/2017
CVSS v2 Base Score: 5.4 | Impact Score: 6.4 | Exploitability Score: 5.5
VMScore: 481
Vector: AV:A/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Integer signedness error in the vwr_read_rec_data_ethernet function in wiretap/vwr.c in the Ixia IxVeriWave file parser in Wireshark 1.8.x prior to 1.8.2 allows user-assisted remote malicious users to execute arbitrary code via a crafted packet-trace file that triggers a buffer overflow.

Vulnerable Product Search on Vulmon Subscribe to Product

sun sunos 5.11

wireshark wireshark 1.8.1

wireshark wireshark 1.8.0

Vendor Advisories

Debian Bug report logs - #680056 wireshark: CVE-2012-4048: PPP dissector crash/segfault Package: wireshark; Maintainer for wireshark is Balint Reczey <rbalint@ubuntucom>; Source for wireshark is src:wireshark (PTS, buildd, popcon) Reported by: Bjørn Mork <bjorn@morkno> Date: Tue, 3 Jul 2012 08:36:02 UTC Severi ...
Debian Bug report logs - #776135 wireshark: Multiple security issues in 1122 and prior versions Package: wireshark; Maintainer for wireshark is Balint Reczey <rbalint@ubuntucom>; Source for wireshark is src:wireshark (PTS, buildd, popcon) Reported by: balint@balintreczeyhu Date: Sat, 24 Jan 2015 10:51:01 UTC Severity: ...
Debian Bug report logs - #780372 CVE-2015-2187 CVE-2015-2188 CVE-2015-2189 CVE-2015-2190 CVE-2015-2191 CVE-2015-2192 Package: wireshark; Maintainer for wireshark is Balint Reczey <rbalint@ubuntucom>; Source for wireshark is src:wireshark (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Th ...