Lucene search

K
cveRedhatCVE-2012-0042
HistoryApr 11, 2012 - 10:39 a.m.

CVE-2012-0042

2012-04-1110:39:25
redhat
web.nvd.nist.gov
76
wireshark
cve-2012-0042
null pointer dereference
dos
nvd
security vulnerability

CVSS2

2.9

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:A/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.2

Confidence

Low

EPSS

0.005

Percentile

75.2%

Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 does not properly perform certain string conversions, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted packet, related to epan/to_str.c.

Affected configurations

Nvd
Node
wiresharkwiresharkMatch1.6.0
OR
wiresharkwiresharkMatch1.6.1
OR
wiresharkwiresharkMatch1.6.2
OR
wiresharkwiresharkMatch1.6.3
OR
wiresharkwiresharkMatch1.6.4
Node
redhatenterprise_linuxMatch5
Node
wiresharkwiresharkMatch1.4.0
OR
wiresharkwiresharkMatch1.4.1
OR
wiresharkwiresharkMatch1.4.2
OR
wiresharkwiresharkMatch1.4.3
OR
wiresharkwiresharkMatch1.4.4
OR
wiresharkwiresharkMatch1.4.5
OR
wiresharkwiresharkMatch1.4.6
OR
wiresharkwiresharkMatch1.4.7
OR
wiresharkwiresharkMatch1.4.8
OR
wiresharkwiresharkMatch1.4.9
OR
wiresharkwiresharkMatch1.4.10
VendorProductVersionCPE
wiresharkwireshark1.6.4cpe:/a:wireshark:wireshark:1.6.4:::
wiresharkwireshark1.6.0cpe:/a:wireshark:wireshark:1.6.0:::
wiresharkwireshark1.6.1cpe:/a:wireshark:wireshark:1.6.1:::
wiresharkwireshark1.6.2cpe:/a:wireshark:wireshark:1.6.2:::
wiresharkwireshark1.6.3cpe:/a:wireshark:wireshark:1.6.3:::

CVSS2

2.9

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:A/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.2

Confidence

Low

EPSS

0.005

Percentile

75.2%