Lucene search

K
cveMitreCVE-2009-4377
HistoryDec 21, 2009 - 9:30 p.m.

CVE-2009-4377

2009-12-2121:30:00
mitre
web.nvd.nist.gov
41
wireshark
smb
smb2
denial of service
vulnerability
cve-2009-4377
nvd

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6

Confidence

Low

EPSS

0.009

Percentile

82.9%

The (1) SMB and (2) SMB2 dissectors in Wireshark 0.9.0 through 1.2.4 allow remote attackers to cause a denial of service (crash) via a crafted packet that triggers a NULL pointer dereference, as demonstrated by fuzz-2009-12-07-11141.pcap.

Affected configurations

Nvd
Node
wiresharkwiresharkMatch0.9.2
OR
wiresharkwiresharkMatch0.9.5
OR
wiresharkwiresharkMatch0.9.6
OR
wiresharkwiresharkMatch0.9.7
OR
wiresharkwiresharkMatch0.9.8
OR
wiresharkwiresharkMatch0.9.10
OR
wiresharkwiresharkMatch0.9.14
OR
wiresharkwiresharkMatch0.99
OR
wiresharkwiresharkMatch0.99.0
OR
wiresharkwiresharkMatch0.99.1
OR
wiresharkwiresharkMatch0.99.2
OR
wiresharkwiresharkMatch0.99.3
OR
wiresharkwiresharkMatch0.99.4
OR
wiresharkwiresharkMatch0.99.5
OR
wiresharkwiresharkMatch0.99.6
OR
wiresharkwiresharkMatch0.99.6a
OR
wiresharkwiresharkMatch0.99.7
OR
wiresharkwiresharkMatch0.99.8
OR
wiresharkwiresharkMatch0.99.9
OR
wiresharkwiresharkMatch1.0
OR
wiresharkwiresharkMatch1.0.0
OR
wiresharkwiresharkMatch1.0.1
OR
wiresharkwiresharkMatch1.0.2
OR
wiresharkwiresharkMatch1.0.3
OR
wiresharkwiresharkMatch1.0.4
OR
wiresharkwiresharkMatch1.0.5
OR
wiresharkwiresharkMatch1.0.6
OR
wiresharkwiresharkMatch1.0.7
OR
wiresharkwiresharkMatch1.0.8
OR
wiresharkwiresharkMatch1.0.9
OR
wiresharkwiresharkMatch1.2
OR
wiresharkwiresharkMatch1.2.0
OR
wiresharkwiresharkMatch1.2.1
OR
wiresharkwiresharkMatch1.2.2
OR
wiresharkwiresharkMatch1.2.3
OR
wiresharkwiresharkMatch1.2.4
VendorProductVersionCPE
wiresharkwireshark0.9.2cpe:2.3:a:wireshark:wireshark:0.9.2:*:*:*:*:*:*:*
wiresharkwireshark0.9.5cpe:2.3:a:wireshark:wireshark:0.9.5:*:*:*:*:*:*:*
wiresharkwireshark0.9.6cpe:2.3:a:wireshark:wireshark:0.9.6:*:*:*:*:*:*:*
wiresharkwireshark0.9.7cpe:2.3:a:wireshark:wireshark:0.9.7:*:*:*:*:*:*:*
wiresharkwireshark0.9.8cpe:2.3:a:wireshark:wireshark:0.9.8:*:*:*:*:*:*:*
wiresharkwireshark0.9.10cpe:2.3:a:wireshark:wireshark:0.9.10:*:*:*:*:*:*:*
wiresharkwireshark0.9.14cpe:2.3:a:wireshark:wireshark:0.9.14:*:*:*:*:*:*:*
wiresharkwireshark0.99cpe:2.3:a:wireshark:wireshark:0.99:*:*:*:*:*:*:*
wiresharkwireshark0.99.0cpe:2.3:a:wireshark:wireshark:0.99.0:*:*:*:*:*:*:*
wiresharkwireshark0.99.1cpe:2.3:a:wireshark:wireshark:0.99.1:*:*:*:*:*:*:*
Rows per page:
1-10 of 361

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6

Confidence

Low

EPSS

0.009

Percentile

82.9%