Wireshark 0.99.8 Multiple Denial of Service Vulnerabilities
BID:28485
Info
Wireshark 0.99.8 Multiple Denial of Service Vulnerabilities
| Bugtraq ID: | 28485 |
| Class: | Unknown |
| CVE: |
CVE-2008-1561 CVE-2008-1562 CVE-2008-1563 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 28 2008 12:00AM |
| Updated: | Apr 13 2015 09:30PM |
| Credit: | Wireshark, Peter Makrai, Caleb Jorden and Rick Bywater |
| Vulnerable: |
Wireshark Wireshark 0.99.8 Wireshark Wireshark 0.99.7 Wireshark Wireshark 0.99.6 Wireshark Wireshark 0.99.5 Wireshark Wireshark 0.99.4 Wireshark Wireshark 0.99.3 Wireshark Wireshark 0.99.2 S.u.S.E. openSUSE 10.3 S.u.S.E. openSUSE 10.2 rPath rPath Linux 1 Redhat Fedora 7 Redhat Enterprise Linux WS 4 Redhat Enterprise Linux WS 3 Redhat Enterprise Linux ES 4 Redhat Enterprise Linux ES 3 Redhat Enterprise Linux Desktop Workstation 5 client Redhat Enterprise Linux Desktop 5 client Redhat Enterprise Linux 5 Server Redhat Desktop 4.0 Redhat Desktop 3.0 Mandriva Linux Mandrake 2008.1 x86_64 Mandriva Linux Mandrake 2008.1 Mandriva Linux Mandrake 2008.0 x86_64 Mandriva Linux Mandrake 2008.0 Mandriva Linux Mandrake 2007.1 x86_64 Mandriva Linux Mandrake 2007.1 MandrakeSoft Corporate Server 4.0 x86_64 MandrakeSoft Corporate Server 4.0 Gentoo Linux Avaya Communication Manager 4.0.3 SP1 Avaya Communication Manager 3.1.4 SP2 Avaya Communication Manager 2.0.1 Avaya Communication Manager 2.0 Avaya Communication Manager 1.3.1 Avaya Communication Manager 1.1 Avaya Communication Manager 5.1 Avaya Communication Manager 5.0 SP3 Avaya Communication Manager 5.0 Avaya Communication Manager 4.0 Avaya Communication Manager 3.1 Avaya Communication Manager 3.0 Avaya Communication Manager 2.2 Avaya Communication Manager 2.1 Avaya Aura SIP Enablement Services 5.0 |
| Not Vulnerable: |
Wireshark Wireshark 1.0 |
Discussion
Wireshark 0.99.8 Multiple Denial of Service Vulnerabilities
Wireshark is prone to multiple denial-of-service vulnerabilities.
Exploiting these issues may allow attackers to cause crashes and deny service to legitimate users of the application. Attackers may be able to leverage some of these vulnerabilities to execute arbitrary code, but this has not been confirmed.
These issues affect Wireshark 0.99.2 up to and including 0.99.8.
Wireshark is prone to multiple denial-of-service vulnerabilities.
Exploiting these issues may allow attackers to cause crashes and deny service to legitimate users of the application. Attackers may be able to leverage some of these vulnerabilities to execute arbitrary code, but this has not been confirmed.
These issues affect Wireshark 0.99.2 up to and including 0.99.8.
Exploit / POC
Wireshark 0.99.8 Multiple Denial of Service Vulnerabilities
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product for the LDAP issue. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following proof-of-concept capture files are available:
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product for the LDAP issue. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following proof-of-concept capture files are available:
Solution / Fix
Wireshark 0.99.8 Multiple Denial of Service Vulnerabilities
Solution:
The vendor has released an update. Please see the references for more information.
Solution:
The vendor has released an update. Please see the references for more information.
References
Wireshark 0.99.8 Multiple Denial of Service Vulnerabilities
References:
References:
- Wireshark Homepage (Wireshark)
- ASA-2008-392 - wireshark security update (RHSA-2008-0890) (Avaya)
- Multiple problems in Wireshark®versions 0.99.2 to 0.99.8 (Wireshark)
- RHSA-2008:0890-2 wireshark security update (Red Hat)