Wireshark Multiple Denial of Service Vulnerabilities
BID:107203
CVE-2019-9208 | CVE-2019-9209 | CVE-2019-9214 |Info
Wireshark Multiple Denial of Service Vulnerabilities
| Bugtraq ID: | 107203 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2019-9208 CVE-2019-9209 CVE-2019-9214 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 27 2019 12:00AM |
| Updated: | Apr 19 2019 11:00AM |
| Credit: | OSS-Fuzz project, and Mateusz Jurczyk. |
| Vulnerable: |
Wireshark Wireshark 2.6.6 Wireshark Wireshark 2.6.5 Wireshark Wireshark 2.6.4 Wireshark Wireshark 2.6.3 Wireshark Wireshark 2.6.2 Wireshark Wireshark 2.6.1 Wireshark Wireshark 2.6 Wireshark Wireshark 2.4.12 Wireshark Wireshark 2.4.11 Wireshark Wireshark 2.4.10 Wireshark Wireshark 2.4.9 Wireshark Wireshark 2.4.8 Wireshark Wireshark 2.4.7 Wireshark Wireshark 2.4.6 Wireshark Wireshark 2.4.5 Wireshark Wireshark 2.4.4 Wireshark Wireshark 2.4.3 Wireshark Wireshark 2.4.1 Wireshark Wireshark 2.4 Wireshark Wireshark 2.4.2 Oracle Solaris 11.4 |
| Not Vulnerable: |
Wireshark Wireshark 2.6.7 Wireshark Wireshark 2.4.13 |
Discussion
Wireshark Multiple Denial of Service Vulnerabilities
Wireshark is prone to multiple denial-of-service vulnerabilities.
An attacker can exploit these issues by injecting a malformed packet onto the wire or by convincing someone to read a malformed 'pcap' file.
Attackers can exploit these issues to crash the affected application, denying service to legitimate users.
Wireshark 2.6.0 through 2.6.6, and 2.4.0 through 2.4.12 are vulnerable.
Wireshark is prone to multiple denial-of-service vulnerabilities.
An attacker can exploit these issues by injecting a malformed packet onto the wire or by convincing someone to read a malformed 'pcap' file.
Attackers can exploit these issues to crash the affected application, denying service to legitimate users.
Wireshark 2.6.0 through 2.6.6, and 2.4.0 through 2.4.12 are vulnerable.
Exploit / POC
Wireshark Multiple Denial of Service Vulnerabilities
Sample packet trace files are available in the Wireshark bug reports. Please see the references for more information.
Sample packet trace files are available in the Wireshark bug reports. Please see the references for more information.
Solution / Fix
Wireshark Multiple Denial of Service Vulnerabilities
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Wireshark Multiple Denial of Service Vulnerabilities
References:
References:
- BER: don't use invalid time offsets. 78/31778/2 (Wireshark)
- tcap: check p_tcap_private before dereferencing (Wireshark)
- Wireshark Homepage (Wireshark)
- Bug 15447 - Stack-based off-by-one buffer overflow in dissect_ber_GeneralizedTim (Wireshark)
- Bug 15464 - Wireshark NULL pointer dereference in dissect_tcap_AARQ_application_ (Wireshark)
- Bug 15536 - [oss-fuzz] #13385 Null-dereference READ in conversation_set_dissecto (Wireshark)
- Bug 1684115 CVE-2019-9214 wireshark: null-deference read in RPCAP dissector (Redhat)
- CVE-2019-9214 (Redhat)
- Oracle Solaris Third Party Bulletin - April 2019 (Oracle)
- rpcap: check conversation existence before dereferencing it. (Wireshark)
- wnpa-sec-2019-06 · ASN.1 BER and related dissectors crash (Wireshark)
- wnpa-sec-2019-07 · TCAP dissector crash (Wireshark)
- wnpa-sec-2019-08 · RPCAP dissector crash (Wireshark)