4.3
CVSSv2

CVE-2013-5717

Published: 16/09/2013 Updated: 30/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

The Bluetooth HCI ACL dissector in Wireshark 1.10.x prior to 1.10.2 does not properly maintain a certain free list, which allows remote malicious users to cause a denial of service (application crash) via a crafted packet that is not properly handled by the wmem_block_alloc function in epan/wmem/wmem_allocator_block.c.

Vulnerable Product Search on Vulmon Subscribe to Product

wireshark wireshark 1.10.1

wireshark wireshark 1.10.0

Vendor Advisories

The Bluetooth HCI ACL dissector in Wireshark 110x before 1102 does not properly maintain a certain free list, which allows remote attackers to cause a denial of service (application crash) via a crafted packet that is not properly handled by the wmem_block_alloc function in epan/wmem/wmem_allocator_blockc ...