6.1
CVSSv2

CVE-2013-2486

Published: 07/03/2013 Updated: 30/10/2018
CVSS v2 Base Score: 6.1 | Impact Score: 6.9 | Exploitability Score: 6.5
VMScore: 543
Vector: AV:A/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The dissect_diagnosticrequest function in epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark 1.8.x prior to 1.8.6 uses an incorrect integer data type, which allows remote malicious users to cause a denial of service (infinite loop) via crafted integer values in a packet.

Vulnerable Product Search on Vulmon Subscribe to Product

opensuse opensuse 12.3

opensuse opensuse 12.1

opensuse opensuse 12.2

debian debian linux 7.0

opensuse opensuse 11.4

wireshark wireshark 1.8.4

wireshark wireshark 1.8.5

wireshark wireshark 1.8.0

wireshark wireshark 1.8.1

wireshark wireshark 1.8.2

wireshark wireshark 1.8.3

Vendor Advisories

Debian Bug report logs - #709167 wireshark: Security vulnerabilities fixed in 187 (CVE-2013-3555 to CVE-2013-3562) Package: wireshark; Maintainer for wireshark is Balint Reczey <rbalint@ubuntucom>; Source for wireshark is src:wireshark (PTS, buildd, popcon) Reported by: Henri Salo <henri@nervfi> Date: Tue, 21 May ...