Lucene search

K
cve[email protected]CVE-2008-1072
HistoryFeb 28, 2008 - 10:44 p.m.

CVE-2008-1072

2008-02-2822:44:00
web.nvd.nist.gov
17
wireshark
tftp
dissector
vulnerability
ubuntu 7.10
cve-2008-1072
nvd

4.7 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:N/I:N/A:C

6.3 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

58.8%

The TFTP dissector in Wireshark (formerly Ethereal) 0.6.0 through 0.99.7, when running on Ubuntu 7.10, allows remote attackers to cause a denial of service (crash or memory consumption) via a malformed packet, possibly related to a Cairo library bug.

Affected configurations

NVD
Node
wiresharkwiresharkMatch0.6
OR
wiresharkwiresharkMatch0.7.9
OR
wiresharkwiresharkMatch0.8.16
OR
wiresharkwiresharkMatch0.9.10
OR
wiresharkwiresharkMatch0.10
OR
wiresharkwiresharkMatch0.10.4
OR
wiresharkwiresharkMatch0.10.13
OR
wiresharkwiresharkMatch0.99
OR
wiresharkwiresharkMatch0.99.1
OR
wiresharkwiresharkMatch0.99.2
OR
wiresharkwiresharkMatch0.99.3
OR
wiresharkwiresharkMatch0.99.4
OR
wiresharkwiresharkMatch0.99.5
OR
wiresharkwiresharkMatch0.99.6
OR
wiresharkwiresharkMatch0.99.7

References

4.7 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:N/I:N/A:C

6.3 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

58.8%