Lucene search

K
nvd[email protected]NVD:CVE-2012-0041
HistoryApr 11, 2012 - 10:39 a.m.

CVE-2012-0041

2012-04-1110:39:25
CWE-20
web.nvd.nist.gov
5

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.2

Confidence

Low

EPSS

0.008

Percentile

82.2%

The dissect_packet function in epan/packet.c in Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 allows remote attackers to cause a denial of service (application crash) via a long packet in a capture file, as demonstrated by an airopeek file.

Affected configurations

Nvd
Node
wiresharkwiresharkMatch1.4.0
OR
wiresharkwiresharkMatch1.4.1
OR
wiresharkwiresharkMatch1.4.2
OR
wiresharkwiresharkMatch1.4.3
OR
wiresharkwiresharkMatch1.4.4
OR
wiresharkwiresharkMatch1.4.5
OR
wiresharkwiresharkMatch1.4.6
OR
wiresharkwiresharkMatch1.4.7
OR
wiresharkwiresharkMatch1.4.8
OR
wiresharkwiresharkMatch1.4.9
OR
wiresharkwiresharkMatch1.4.10
Node
wiresharkwiresharkMatch1.6.0
OR
wiresharkwiresharkMatch1.6.1
OR
wiresharkwiresharkMatch1.6.2
OR
wiresharkwiresharkMatch1.6.3
OR
wiresharkwiresharkMatch1.6.4
Node
redhatenterprise_linuxMatch5

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.2

Confidence

Low

EPSS

0.008

Percentile

82.2%