CVE-2009-3242

Wireshark - Denial of Service

Title source: rule
STIX 2.1

Description

Unspecified vulnerability in packet.c in the GSM A RR dissector in Wireshark 1.2.0 and 1.2.1 allows remote attackers to cause a denial of service (application crash) via unknown vectors related to "an uninitialized dissector handle," which triggers an assertion failure.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Buildbot Builder · textdoslinux
https://www.exploit-db.com/exploits/33224

References (7)

Core 7
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/36408
Vendor Advisory x_refsource_confirm
http://www.wireshark.org/security/wnpa-sec-2009-06.html
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/36754
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/37409
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5423

Scores

EPSS 0.0315
EPSS Percentile 87.0%

Details

Status published
Products (2)
wireshark/wireshark 1.2.0
wireshark/wireshark 1.2.1
Published Sep 18, 2009
Tracked Since Feb 18, 2026