Wireshark 'bytes_repr_len()' NULL Pointer Dereference Denial Of Service Vulnerability
BID:48389
Info
Wireshark 'bytes_repr_len()' NULL Pointer Dereference Denial Of Service Vulnerability
| Bugtraq ID: | 48389 |
| Class: | Input Validation Error |
| CVE: |
CVE-2011-1956 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 17 2011 12:00AM |
| Updated: | Apr 17 2011 12:00AM |
| Credit: | rouli |
| Vulnerable: |
Wireshark Wireshark 1.4.5 |
| Not Vulnerable: |
Wireshark Wireshark 1.4.6 |
Discussion
Wireshark 'bytes_repr_len()' NULL Pointer Dereference Denial Of Service Vulnerability
Wireshark is prone to a remote denial-of-service vulnerability caused by a NULL-pointer-dereference error.
An attacker can exploit this issue to crash the application, resulting in a denial-of-service condition.
Wireshark 1.4.5 is vulnerable.
Wireshark is prone to a remote denial-of-service vulnerability caused by a NULL-pointer-dereference error.
An attacker can exploit this issue to crash the application, resulting in a denial-of-service condition.
Wireshark 1.4.5 is vulnerable.
Exploit / POC
Wireshark 'bytes_repr_len()' NULL Pointer Dereference Denial Of Service Vulnerability
The packet capture file that triggers this issue has been provided. Note that Symantec has not tested or verified the file.
The packet capture file that triggers this issue has been provided. Note that Symantec has not tested or verified the file.
Solution / Fix
Wireshark 'bytes_repr_len()' NULL Pointer Dereference Denial Of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Wireshark 'bytes_repr_len()' NULL Pointer Dereference Denial Of Service Vulnerability
References:
References:
- Bug 5837 - Wireshark (and tshark) crashes on tcp traffic - dissector accessed an (rouli)
- Wireshark 1.4.6 Release Notes (Wireshark)
- Wireshark Homepage (Wireshark)