Wireshark LLDP Dissector CVE-2015-2190 Denial of Service Vulnerability
BID:72938
Info
Wireshark LLDP Dissector CVE-2015-2190 Denial of Service Vulnerability
| Bugtraq ID: | 72938 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2015-2190 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 04 2015 12:00AM |
| Updated: | Dec 07 2015 10:17PM |
| Credit: | Buildbot Builder |
| Vulnerable: |
Gentoo Linux |
| Not Vulnerable: | |
Discussion
Wireshark LLDP Dissector CVE-2015-2190 Denial of Service Vulnerability
Wireshark is prone to a remote denial-of-service vulnerability because it fails to properly handle certain types of packets.
An attacker can leverage this issue to crash the affected application, denying service to legitimate users.
Wireshark 1.12.0 through 1.12.3 are vulnerable.
Wireshark is prone to a remote denial-of-service vulnerability because it fails to properly handle certain types of packets.
An attacker can leverage this issue to crash the affected application, denying service to legitimate users.
Wireshark 1.12.0 through 1.12.3 are vulnerable.
Exploit / POC
Wireshark LLDP Dissector CVE-2015-2190 Denial of Service Vulnerability
A sample packet trace file is available in the Wireshark bug report. Please see the references for more information.
A sample packet trace file is available in the Wireshark bug report. Please see the references for more information.
Solution / Fix
Wireshark LLDP Dissector CVE-2015-2190 Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Wireshark LLDP Dissector CVE-2015-2190 Denial of Service Vulnerability
References:
References:
- Wireshark Homepage (Wireshark)