Wireshark TN5250 Dissector CVE-2014-8714 Infinite Loop Denial of Service Vulnerability
BID:71072
Info
Wireshark TN5250 Dissector CVE-2014-8714 Infinite Loop Denial of Service Vulnerability
| Bugtraq ID: | 71072 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2014-8714 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 12 2014 12:00AM |
| Updated: | Oct 19 2017 03:03AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Wireshark Wireshark 1.12.1 Wireshark Wireshark 1.12 Wireshark Wireshark 1.10.10 Wireshark Wireshark 1.10.8 Wireshark Wireshark 1.10.7 Wireshark Wireshark 1.10.6 Wireshark Wireshark 1.10.5 Wireshark Wireshark 1.10.4 Wireshark Wireshark 1.10.3 Wireshark Wireshark 1.10.2 Wireshark Wireshark 1.10.1 Wireshark Wireshark 1.10 Wireshark Wireshark 1.10.9 Redhat Enterprise Linux Workstation Optional 6 Redhat Enterprise Linux Workstation 7 Redhat Enterprise Linux Workstation 6 Redhat Enterprise Linux Server Optional 6 Redhat Enterprise Linux Server 7 Redhat Enterprise Linux Server 6 Redhat Enterprise Linux Desktop Optional 6 Redhat Enterprise Linux Desktop 7 Redhat Enterprise Linux Desktop 6 Oracle Linux 0 Oracle Enterprise Linux 6.2 Oracle Enterprise Linux 6 Oracle Communications WebRTC Session Controller 7.2 Oracle Communications WebRTC Session Controller 7.1 Oracle Communications WebRTC Session Controller 7.0 Mandriva Business Server 1 X86 64 Mandriva Business Server 1 Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 |
| Not Vulnerable: |
Wireshark Wireshark 1.12.2 Wireshark Wireshark 1.10.11 |
Solution / Fix
Wireshark TN5250 Dissector CVE-2014-8714 Infinite Loop Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Mandriva Business Server 1 X86 64
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Mandriva Business Server 1 X86 64
-
Mandriva dumpcap-1.10.11-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64wireshark-devel-1.10.11-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64wireshark3-1.10.11-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64wiretap3-1.10.11-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64wsutil3-1.10.11-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva rawshark-1.10.11-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva tshark-1.10.11-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva wireshark-1.10.11-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva wireshark-tools-1.10.11-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/
References
Wireshark TN5250 Dissector CVE-2014-8714 Infinite Loop Denial of Service Vulnerability
References:
References:
- Wireshark Homepage (Wireshark)
- Oracle Critical Patch Update Advisory - October 2017 (Oracle)
- Ref: linuxbulletinoct2015-2719645 Oracle Linux Bulletin - October 2015 Revision (Oracle)
- RHSA-2015:2393-1: wireshark security, bug fix, and enhancement update (Red Hat)
- Wireshark Bug Database �?? Bug 10596 (Wireshark)
- wnpa-sec-2014-23 · TN5250 infinite loops (Wireshark)