Wireshark Capture File Heap Buffer Overflow Vulnerability
BID:46945
Info
Wireshark Capture File Heap Buffer Overflow Vulnerability
| Bugtraq ID: | 46945 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2011-0024 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 21 2011 12:00AM |
| Updated: | Mar 19 2015 09:31AM |
| Credit: | Marc Schoenefeld |
| Vulnerable: |
Wireshark Wireshark 1.4.4 Wireshark Wireshark 1.4.3 Wireshark Wireshark 1.4.2 Wireshark Wireshark 1.4.1 Wireshark Wireshark 1.2.12 Wireshark Wireshark 1.2.10 Wireshark Wireshark 1.2.9 Wireshark Wireshark 1.2.8 Wireshark Wireshark 1.2.7 Wireshark Wireshark 1.2.6 Wireshark Wireshark 1.2.5 Wireshark Wireshark 1.2.4 Wireshark Wireshark 1.2.3 Wireshark Wireshark 1.2.2 Wireshark Wireshark 1.2.1 Wireshark Wireshark 1.2 Wireshark Wireshark 1.0.15 Wireshark Wireshark 1.0.14 Wireshark Wireshark 1.0.13 Wireshark Wireshark 1.0.12 Wireshark Wireshark 1.0.11 Wireshark Wireshark 1.0.10 Wireshark Wireshark 1.0.9 Wireshark Wireshark 1.0.8 Wireshark Wireshark 1.0.7 Wireshark Wireshark 1.0.6 Wireshark Wireshark 1.0.5 Wireshark Wireshark 1.0.4 Wireshark Wireshark 1.0.3 Wireshark Wireshark 1.0.2 Wireshark Wireshark 1.0.1 Wireshark Wireshark 1.0 Wireshark Wireshark 0.99.8 Wireshark Wireshark 0.99.7 Wireshark Wireshark 0.99.6 Wireshark Wireshark 0.99.5 Wireshark Wireshark 0.99.4 Wireshark Wireshark 0.99.3 Wireshark Wireshark 0.99.2 Wireshark Wireshark 0.99.1 Wireshark Wireshark 0.99 Wireshark Wireshark 0.10.13 Wireshark Wireshark 0.10.8 Wireshark Wireshark 0.10.4 Wireshark Wireshark 0.10 Wireshark Wireshark 0.9.10 Wireshark Wireshark 0.9.6 Wireshark Wireshark 0.9.5 Wireshark Wireshark 0.9.2 Wireshark Wireshark 0.8.20 Wireshark Wireshark 0.8.16 Wireshark Wireshark 0.7.9 Wireshark Wireshark 0.6 Wireshark Wireshark 1.4.1 Wireshark Wireshark 1.4.0 Wireshark Wireshark 1.2.15 Wireshark Wireshark 1.2.14 Wireshark Wireshark 1.2.13 Wireshark Wireshark 1.2.12 Wireshark Wireshark 1.2.11 Wireshark Wireshark 1.0.16 RedHat Enterprise Linux WS 4 RedHat Enterprise Linux ES 4 RedHat Enterprise Linux Desktop Workstation 5 client RedHat Enterprise Linux Desktop version 4 Red Hat Enterprise Linux Desktop 5 client Red Hat Enterprise Linux AS 4 Red Hat Enterprise Linux 5 Server Avaya Proactive Contact 5.0 Avaya Messaging Storage Server 5.2.2 Avaya Messaging Storage Server 5.2 SP3 Avaya Messaging Storage Server 5.2 SP2 Avaya Messaging Storage Server 5.2 SP1 Avaya Messaging Storage Server 5.2 Avaya Messaging Storage Server 5.1 SP2 Avaya Messaging Storage Server 5.1 SP1 Avaya Messaging Storage Server 5.1 Avaya Messaging Storage Server 5.0 Avaya Messaging Storage Server 4.0 Avaya Aura System Platform 6.0 Avaya Aura System Platform 1.1 Avaya Aura System Manager 6.1 Avaya Aura System Manager 6.0 SP1 Avaya Aura System Manager 6.0 Avaya Aura System Manager 5.2 Avaya Aura SIP Enablement Services 5.2.1 Avaya Aura SIP Enablement Services 5.2 Avaya Aura SIP Enablement Services 5.1 Avaya Aura SIP Enablement Services 5.0 Avaya Aura SIP Enablement Services 4.0 Avaya Aura Session Manager 6.1 Avaya Aura Session Manager 6.0 Avaya Aura Session Manager 5.2 Avaya Aura Session Manager 1.1 Avaya Aura Communication Manager 6.0.1 Avaya Aura Communication Manager 6.0 Avaya Aura Communication Manager 5.2 Avaya Aura Communication Manager 5.1 Avaya Aura Communication Manager 4.0 Avaya Aura Communication Manager 4.0 Avaya Aura Application Enablement Services 5.2.1 Avaya Aura Application Enablement Services 6.1 Avaya Aura Application Enablement Services 5.2.3 Avaya Aura Application Enablement Services 5.2.2 Avaya Aura Application Enablement Services 5.2 |
| Not Vulnerable: | |
Discussion
Wireshark Capture File Heap Buffer Overflow Vulnerability
Wireshark is prone to a heap-based buffer-overflow vulnerability because it fails to properly bounds-check user-supplied input.
Exploiting this issue may allow attackers to crash the application and deny service to legitimate users. Attackers may also execute arbitrary code in the context of vulnerable users running the application.
Wireshark is prone to a heap-based buffer-overflow vulnerability because it fails to properly bounds-check user-supplied input.
Exploiting this issue may allow attackers to crash the application and deny service to legitimate users. Attackers may also execute arbitrary code in the context of vulnerable users running the application.
Exploit / POC
Wireshark Capture File Heap Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Wireshark Capture File Heap Buffer Overflow Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Wireshark Capture File Heap Buffer Overflow Vulnerability
References:
References:
- Bug 671331 - (CVE-2011-0024) CVE-2011-0024 heap-based buffer overflow in wiresha (Huzaifa S. Sidhpurwala)
- Wireshark Homepage (Wireshark)
- ASA-2011-117 wireshark security update (RHSA-2011-0370) (Avaya)