7.8
CVSSv2

CVE-2013-4929

Published: 30/07/2013 Updated: 19/09/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The parseFields function in epan/dissectors/packet-dis-pdus.c in the DIS dissector in Wireshark 1.8.x prior to 1.8.9 and 1.10.x prior to 1.10.1 does not terminate packet-data processing after finding zero remaining bytes, which allows remote malicious users to cause a denial of service (loop) via a crafted packet.

Vulnerable Product Search on Vulmon Subscribe to Product

wireshark wireshark 1.8.6

wireshark wireshark 1.8.7

wireshark wireshark 1.8.4

wireshark wireshark 1.8.5

wireshark wireshark 1.8.2

wireshark wireshark 1.8.3

wireshark wireshark 1.8.0

wireshark wireshark 1.8.1

wireshark wireshark 1.8.8

wireshark wireshark 1.10.0

Vendor Advisories

The parseFields function in epan/dissectors/packet-dis-pdusc in the DIS dissector in Wireshark 18x before 189 and 110x before 1101 does not terminate packet-data processing after finding zero remaining bytes, which allows remote attackers to cause a denial of service (loop) via a crafted packet ...