Wireshark IKE Packet Handling Denial of Service Vulnerability
BID:49377
Info
Wireshark IKE Packet Handling Denial of Service Vulnerability
| Bugtraq ID: | 49377 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2011-3266 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 30 2011 12:00AM |
| Updated: | Apr 13 2015 10:16PM |
| Credit: | Penetration test team Of NCNIPC (China) |
| Vulnerable: |
Wireshark Wireshark 1.6.1 Wireshark Wireshark 1.6 Wireshark Wireshark 1.4.8 Wireshark Wireshark 1.4.7 Wireshark Wireshark 1.4.6 Wireshark Wireshark 1.4.5 Wireshark Wireshark 1.4.4 Wireshark Wireshark 1.4.3 Wireshark Wireshark 1.4.2 Wireshark Wireshark 1.4.1 Wireshark Wireshark 1.4.1 Wireshark Wireshark 1.4.0 SuSE SUSE Linux Enterprise Server for VMware 11 SP1 SuSE SUSE Linux Enterprise Server 11 SP1 SuSE SUSE Linux Enterprise Server 10 SP4 SuSE SUSE Linux Enterprise SDK 11 SP1 SuSE SUSE Linux Enterprise SDK 10 SP4 SuSE Suse Linux Enterprise Desktop 11 SP1 SuSE Suse Linux Enterprise Desktop 10 SP4 S.u.S.E. openSUSE 11.4 S.u.S.E. openSUSE 11.3 Oracle Solaris 11 |
| Not Vulnerable: |
Wireshark Wireshark 1.6.2 Wireshark Wireshark 1.4.9 |
Discussion
Wireshark IKE Packet Handling Denial of Service Vulnerability
Wireshark is prone to a denial-of-service vulnerability because it fails to properly handle specially crafted IKE packets.
An attacker can exploit this issue to trigger an infinite loop, which causes the affected application to crash, denying service to legitimate users.
Wireshark 1.6.1 is vulnerable; other versions may also be affected.
Wireshark is prone to a denial-of-service vulnerability because it fails to properly handle specially crafted IKE packets.
An attacker can exploit this issue to trigger an infinite loop, which causes the affected application to crash, denying service to legitimate users.
Wireshark 1.6.1 is vulnerable; other versions may also be affected.
Exploit / POC
Wireshark IKE Packet Handling Denial of Service Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Wireshark IKE Packet Handling Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Wireshark IKE Packet Handling Denial of Service Vulnerability
References:
References:
- Denial of Service vulnerability in Wireshark (Oracle)
- Wireshark Homepage (Wireshark)
- Wireshark IKE Packet Processing Error Lets Remote Users Deny Service (Security Tracker)
- wnpa-sec-2011-13 Wireshark IKE dissector vulnerability (Wireshark)