Wireshark M3UA Dissector CVE-2014-2282 Denial of Service Vulnerability
BID:66070
Info
Wireshark M3UA Dissector CVE-2014-2282 Denial of Service Vulnerability
| Bugtraq ID: | 66070 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2014-2282 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 07 2014 12:00AM |
| Updated: | Apr 13 2015 09:14PM |
| Credit: | Laurent Butti. |
| Vulnerable: |
Gentoo Linux |
| Not Vulnerable: | |
Discussion
Wireshark M3UA Dissector CVE-2014-2282 Denial of Service Vulnerability
Wireshark is prone to a remote denial-of-service vulnerability because it fails to properly handle certain types of packets.
An attacker can leverage this issue to crash the affected application, denying service to legitimate users.
Wireshark 1.10.0 to 1.10.5 are vulnerable.
Wireshark is prone to a remote denial-of-service vulnerability because it fails to properly handle certain types of packets.
An attacker can leverage this issue to crash the affected application, denying service to legitimate users.
Wireshark 1.10.0 to 1.10.5 are vulnerable.
Solution / Fix
Wireshark M3UA Dissector CVE-2014-2282 Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Wireshark M3UA Dissector CVE-2014-2282 Denial of Service Vulnerability
References:
References:
- Wireshark 1.10.6 Release Notes (Wireshark)
- Wireshark Homepage (Wireshark)
- wnpa-sec-2014-02 · M3UA dissector crash (Wireshark)