5
CVSSv2

CVE-2015-3815

Published: 26/05/2015 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The detect_version function in wiretap/logcat.c in the Android Logcat file parser in Wireshark 1.12.x prior to 1.12.5 does not check the length of the payload, which allows remote malicious users to cause a denial of service (out-of-bounds read and application crash) via a packet with a crafted payload, as demonstrated by a length of zero, a different vulnerability than CVE-2015-3906.

Vulnerable Product Search on Vulmon Subscribe to Product

wireshark wireshark 1.12.4

wireshark wireshark 1.12.0

wireshark wireshark 1.12.2

wireshark wireshark 1.12.1

wireshark wireshark 1.12.3

Vendor Advisories

Multiple vulnerabilities were discovered in the dissectors/parsers for LBMR, web sockets, WCP, X11, IEEE 80211 and Android Logcat, which could result in denial of service For the oldstable distribution (wheezy), these problems have been fixed in version 182-5wheezy16 For the stable distribution (jessie), these problems have been fixed in versi ...