Wireshark NTLMSSP Dissector Buffer Overflow Vulnerability
BID:57618
Info
Wireshark NTLMSSP Dissector Buffer Overflow Vulnerability
| Bugtraq ID: | 57618 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2013-1590 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 29 2013 12:00AM |
| Updated: | Mar 08 2013 11:44AM |
| Credit: | Ulf Härnhammar |
| Vulnerable: |
Wireshark Wireshark 1.6.8 Wireshark Wireshark 1.6.7 Wireshark Wireshark 1.6.6 Wireshark Wireshark 1.6.5 Wireshark Wireshark 1.6.4 Wireshark Wireshark 1.6.3 Wireshark Wireshark 1.6.2 Wireshark Wireshark 1.6.1 MandrakeSoft Enterprise Server 5 x86_64 MandrakeSoft Enterprise Server 5 Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 |
| Not Vulnerable: | |
Discussion
Wireshark NTLMSSP Dissector Buffer Overflow Vulnerability
Wireshark is prone to a buffer-overflow vulnerability because it because it fails to properly bounds check data before copying it into an insufficiently sized buffer.
An attacker can exploit this issue to crash the affected application. Given the nature of this issue, attackers may also be able to execute arbitrary code, but this has not been confirmed.
The following products are affected:
Wireshark 1.6.0 through versions 1.6.12
Wireshark 1.8.0 through versions 1.8.4
Wireshark is prone to a buffer-overflow vulnerability because it because it fails to properly bounds check data before copying it into an insufficiently sized buffer.
An attacker can exploit this issue to crash the affected application. Given the nature of this issue, attackers may also be able to execute arbitrary code, but this has not been confirmed.
The following products are affected:
Wireshark 1.6.0 through versions 1.6.12
Wireshark 1.8.0 through versions 1.8.4
Exploit / POC
Wireshark NTLMSSP Dissector Buffer Overflow Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Wireshark NTLMSSP Dissector Buffer Overflow Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Wireshark NTLMSSP Dissector Buffer Overflow Vulnerability
References:
References:
- Wireshark Homepage (Wireshark)