Wireshark 0.10.8 to 1.0.14 and 1.2.0 to 1.2.9 Multiple Vulnerabilities
BID:42618
Info
Wireshark 0.10.8 to 1.0.14 and 1.2.0 to 1.2.9 Multiple Vulnerabilities
| Bugtraq ID: | 42618 |
| Class: | Unknown |
| CVE: |
CVE-2010-2992 CVE-2010-2993 CVE-2010-2994 CVE-2010-2995 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 23 2010 12:00AM |
| Updated: | Apr 13 2015 10:14PM |
| Credit: | Buildbot Builder and the vendor |
| Vulnerable: |
Wireshark Wireshark 1.2.8 Wireshark Wireshark 1.2.7 Wireshark Wireshark 1.2.6 Wireshark Wireshark 1.2.5 Wireshark Wireshark 1.2.4 Wireshark Wireshark 1.2.3 Wireshark Wireshark 1.2.2 Wireshark Wireshark 1.2.1 Wireshark Wireshark 1.2 Wireshark Wireshark 1.0.13 Wireshark Wireshark 1.0.12 Wireshark Wireshark 1.0.11 Wireshark Wireshark 1.0.10 Wireshark Wireshark 1.0.9 Wireshark Wireshark 1.0.8 Wireshark Wireshark 1.0.7 Wireshark Wireshark 1.0.6 Wireshark Wireshark 1.0.5 Wireshark Wireshark 1.0.4 Wireshark Wireshark 1.0.3 Wireshark Wireshark 1.0.2 Wireshark Wireshark 1.0.1 Wireshark Wireshark 1.0 Wireshark Wireshark 0.99.8 Wireshark Wireshark 0.99.7 Wireshark Wireshark 0.99.6 Wireshark Wireshark 0.99.5 Wireshark Wireshark 0.99.4 Wireshark Wireshark 0.99.2 Wireshark Wireshark 0.99.1 Wireshark Wireshark 0.99 Wireshark Wireshark 0.10.13 Wireshark Wireshark 0.10.8 Wireshark Wireshark 0.10.4 SuSE SUSE Linux Enterprise 11 SP1 SuSE SUSE Linux Enterprise 10 SP4 SuSE SUSE Linux Enterprise 10 SP3 SuSE openSUSE 11.4 SuSE openSUSE 11.3 S.u.S.E. openSUSE 11.2 S.u.S.E. openSUSE 11.1 Debian Linux 5.0 sparc Debian Linux 5.0 s/390 Debian Linux 5.0 powerpc Debian Linux 5.0 mipsel Debian Linux 5.0 mips Debian Linux 5.0 m68k Debian Linux 5.0 ia-64 Debian Linux 5.0 ia-32 Debian Linux 5.0 hppa Debian Linux 5.0 armel Debian Linux 5.0 arm Debian Linux 5.0 amd64 Debian Linux 5.0 alpha Debian Linux 5.0 Avaya Messaging Storage Server MM3.0 Avaya Messaging Storage Server 5.2 Avaya Messaging Storage Server 5.1 Avaya Messaging Storage Server 5.0 Avaya Messaging Storage Server 4.0 Avaya Messaging Storage Server 3.1 SP1 Avaya Messaging Storage Server 3.1 Avaya Messaging Storage Server 2.0 Avaya Messaging Storage Server 1.0 Avaya Messaging Storage Server Avaya Aura System Platform SP1.1 Avaya Aura System Platform 6.0 Avaya Aura System Platform 1.1 Avaya Aura SIP Enablement Services 5.2.1 Avaya Aura SIP Enablement Services 3.1.1 Avaya Aura SIP Enablement Services 3.1 Avaya Aura SIP Enablement Services 5.2 Avaya Aura SIP Enablement Services 5.1 Avaya Aura SIP Enablement Services 5.0 Avaya Aura SIP Enablement Services 4.0 Avaya Aura SIP Enablement Services 3.1 Avaya Aura SIP Enablement Services 3.0 Avaya Aura Session Manager 6.0 Avaya Aura Session Manager 5.2 SP2 Avaya Aura Session Manager 5.2 SP1 Avaya Aura Session Manager 5.2 Avaya Aura Session Manager 1.1 Avaya Aura Session Manager 1.0 Avaya Aura Communication Manager 6.0 Avaya Aura Communication Manager 5.2 Avaya Aura Communication Manager 5.1 Avaya Aura Communication Manager 4.0 Avaya Aura Communication Manager 4.0 Avaya Aura Application Enablement Services 5.2.1 Avaya Aura Application Enablement Services 4.2.3 Avaya Aura Application Enablement Services 4.2.2 Avaya Aura Application Enablement Services 4.2.1 Avaya Aura Application Enablement Services 4.0.1 Avaya Aura Application Enablement Services 3.1.6 Avaya Aura Application Enablement Services 3.1.5 Avaya Aura Application Enablement Services 3.1.4 Avaya Aura Application Enablement Services 3.1.3 Avaya Aura Application Enablement Services 5.2 Avaya Aura Application Enablement Services 4.2 Avaya Aura Application Enablement Services 4.1 Avaya Aura Application Enablement Services 4.0 Avaya Aura Application Enablement Services 3.1 Avaya Aura Application Enablement Services 3.0 |
| Not Vulnerable: |
Wireshark Wireshark 1.2.10 Wireshark Wireshark 1.0.15 |
Discussion
Wireshark 0.10.8 to 1.0.14 and 1.2.0 to 1.2.9 Multiple Vulnerabilities
Wireshark is prone to multiple denial-of-service and buffer-overflow vulnerabilities.
Exploiting these issues may allow attackers to crash the application and deny service to legitimate users. Attackers may also execute arbitrary code in the context of users running the application.
These issues affect Wireshark 0.10.8 to 1.0.14 and 1.2.0 to 1.2.9
Wireshark is prone to multiple denial-of-service and buffer-overflow vulnerabilities.
Exploiting these issues may allow attackers to crash the application and deny service to legitimate users. Attackers may also execute arbitrary code in the context of users running the application.
These issues affect Wireshark 0.10.8 to 1.0.14 and 1.2.0 to 1.2.9
Exploit / POC
Wireshark 0.10.8 to 1.0.14 and 1.2.0 to 1.2.9 Multiple Vulnerabilities
Proof-of-concept capture files for some of the issues are available from the following locations:
http://www.wireshark.org/download/automated/captures/fuzz-2010-06-11-3030.pcap
http://www.wireshark.org/download/automated/captures/fuzz-2010-06-20-7873.pcap
Note that Symantec has not verified or tested these files.
Currently we are not aware of any working exploits for the buffer-overflow issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Proof-of-concept capture files for some of the issues are available from the following locations:
http://www.wireshark.org/download/automated/captures/fuzz-2010-06-11-3030.pcap
http://www.wireshark.org/download/automated/captures/fuzz-2010-06-20-7873.pcap
Note that Symantec has not verified or tested these files.
Currently we are not aware of any working exploits for the buffer-overflow issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Wireshark 0.10.8 to 1.0.14 and 1.2.0 to 1.2.9 Multiple Vulnerabilities
Solution:
Updates are available. Please see the references for more information.
Debian Linux 5.0 ia-64
Debian Linux 5.0 alpha
Debian Linux 5.0 mipsel
Debian Linux 5.0 armel
Debian Linux 5.0 mips
Debian Linux 5.0 sparc
Debian Linux 5.0 ia-32
Debian Linux 5.0 s/390
Debian Linux 5.0 hppa
Solution:
Updates are available. Please see the references for more information.
Debian Linux 5.0 ia-64
-
Debian tshark_1.0.2-3+lenny10_ia64.deb
http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2- 3+lenny10_ia64.deb -
Debian wireshark-common_1.0.2-3+lenny10_ia64.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-com mon_1.0.2-3+lenny10_ia64.deb -
Debian wireshark-dev_1.0.2-3+lenny10_ia64.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev _1.0.2-3+lenny10_ia64.deb -
Debian wireshark_1.0.2-3+lenny10_ia64.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0 .2-3+lenny10_ia64.deb
Debian Linux 5.0 alpha
-
Debian tshark_1.0.2-3+lenny10_alpha.deb
http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2- 3+lenny10_alpha.deb -
Debian wireshark-common_1.0.2-3+lenny10_alpha.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-com mon_1.0.2-3+lenny10_alpha.deb -
Debian wireshark-dev_1.0.2-3+lenny10_alpha.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev _1.0.2-3+lenny10_alpha.deb -
Debian wireshark_1.0.2-3+lenny10_alpha.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0 .2-3+lenny10_alpha.deb
Debian Linux 5.0 mipsel
-
Debian tshark_1.0.2-3+lenny10_mipsel.deb
http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2- 3+lenny10_mipsel.deb -
Debian wireshark-common_1.0.2-3+lenny10_mipsel.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-com mon_1.0.2-3+lenny10_mipsel.deb -
Debian wireshark-dev_1.0.2-3+lenny10_mipsel.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev _1.0.2-3+lenny10_mipsel.deb -
Debian wireshark_1.0.2-3+lenny10_mipsel.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0 .2-3+lenny10_mipsel.deb
Debian Linux 5.0 armel
-
Debian tshark_1.0.2-3+lenny10_armel.deb
http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2- 3+lenny10_armel.deb -
Debian wireshark-common_1.0.2-3+lenny10_armel.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-com mon_1.0.2-3+lenny10_armel.deb -
Debian wireshark-dev_1.0.2-3+lenny10_armel.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev _1.0.2-3+lenny10_armel.deb -
Debian wireshark_1.0.2-3+lenny10_armel.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0 .2-3+lenny10_armel.deb
Debian Linux 5.0 mips
-
Debian tshark_1.0.2-3+lenny10_mips.deb
http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2- 3+lenny10_mips.deb -
Debian wireshark-common_1.0.2-3+lenny10_mips.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-com mon_1.0.2-3+lenny10_mips.deb -
Debian wireshark-dev_1.0.2-3+lenny10_mips.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev _1.0.2-3+lenny10_mips.deb -
Debian wireshark_1.0.2-3+lenny10_mips.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0 .2-3+lenny10_mips.deb
Debian Linux 5.0 sparc
-
Debian tshark_1.0.2-3+lenny10_sparc.deb
http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2- 3+lenny10_sparc.deb -
Debian wireshark-common_1.0.2-3+lenny10_sparc.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-com mon_1.0.2-3+lenny10_sparc.deb -
Debian wireshark-dev_1.0.2-3+lenny10_sparc.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev _1.0.2-3+lenny10_sparc.deb -
Debian wireshark_1.0.2-3+lenny10_sparc.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0 .2-3+lenny10_sparc.deb
Debian Linux 5.0 ia-32
-
Debian tshark_1.0.2-3+lenny10_i386.deb
http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2- 3+lenny10_i386.deb -
Debian wireshark-common_1.0.2-3+lenny10_i386.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-com mon_1.0.2-3+lenny10_i386.deb -
Debian wireshark-dev_1.0.2-3+lenny10_i386.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev _1.0.2-3+lenny10_i386.deb -
Debian wireshark_1.0.2-3+lenny10_i386.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0 .2-3+lenny10_i386.deb
Debian Linux 5.0 s/390
-
Debian tshark_1.0.2-3+lenny10_s390.deb
http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2- 3+lenny10_s390.deb -
Debian wireshark-common_1.0.2-3+lenny10_s390.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-com mon_1.0.2-3+lenny10_s390.deb -
Debian wireshark-dev_1.0.2-3+lenny10_s390.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev _1.0.2-3+lenny10_s390.deb -
Debian wireshark_1.0.2-3+lenny10_s390.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0 .2-3+lenny10_s390.deb
Debian Linux 5.0 hppa
-
Debian tshark_1.0.2-3+lenny10_hppa.deb
http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2- 3+lenny10_hppa.deb -
Debian wireshark-common_1.0.2-3+lenny10_hppa.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-com mon_1.0.2-3+lenny10_hppa.deb -
Debian wireshark-dev_1.0.2-3+lenny10_hppa.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev _1.0.2-3+lenny10_hppa.deb -
Debian wireshark_1.0.2-3+lenny10_hppa.deb
http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0 .2-3+lenny10_hppa.deb
References
Wireshark 0.10.8 to 1.0.14 and 1.2.0 to 1.2.9 Multiple Vulnerabilities
References:
References:
- Wireshark Homepage (Wireshark)
- ASA-2010-239 wireshark security update (RHSA-2010-0625) (Avaya)
- Wireshark 1.2.10 Release Notes (Wireshark)