Wireshark NCP Dissector CVE-2014-8713 Denial of Service Vulnerability
BID:71073
Info
Wireshark NCP Dissector CVE-2014-8713 Denial of Service Vulnerability
| Bugtraq ID: | 71073 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2014-8713 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 12 2014 12:00AM |
| Updated: | Feb 02 2016 08:08PM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Red Hat Enterprise Linux Workstation Optional 6 Red Hat Enterprise Linux Workstation 6 Red Hat Enterprise Linux Server Optional 6 Red Hat Enterprise Linux Server 6 Red Hat Enterprise Linux Desktop Optional 6 Red Hat Enterprise Linux Desktop 6 Oracle Linux 0 Oracle Enterprise Linux 6.2 Oracle Enterprise Linux 6 Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 |
| Not Vulnerable: | |
Discussion
Wireshark NCP Dissector CVE-2014-8713 Denial of Service Vulnerability
Wireshark is prone to a remote denial-of-service vulnerability because it fails to properly handle certain types of packets.
An attacker can leverage this issue to crash the affected application, denying service to legitimate users.
Wireshark versions 1.10.0 through 1.10.10 and 1.12.0 through 1.12.1 are vulnerable.
Wireshark is prone to a remote denial-of-service vulnerability because it fails to properly handle certain types of packets.
An attacker can leverage this issue to crash the affected application, denying service to legitimate users.
Wireshark versions 1.10.0 through 1.10.10 and 1.12.0 through 1.12.1 are vulnerable.
Exploit / POC
Wireshark NCP Dissector CVE-2014-8713 Denial of Service Vulnerability
A sample packet trace file is available in the Wireshark bug report. Please see the references for more information.
A sample packet trace file is available in the Wireshark bug report. Please see the references for more information.
Solution / Fix
Wireshark NCP Dissector CVE-2014-8713 Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Wireshark NCP Dissector CVE-2014-8713 Denial of Service Vulnerability
References:
References:
- Wireshark Homepage (Wireshark)