FEDORA-2011-0128Vendor advisory
http://lists.fedoraproject.org/pipermail/package-announce/2011-January/053042.html CVE-2010-4538
Wireshark - ENTTEC DMX Data RLE Buffer Overflow
Record summary
CVE-2010-4538 has a selected CVSS score of 9.3; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in the sect_enttec_dmx_da function in epan/dissectors/packet-enttec.c in Wireshark 1.4.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted ENTTEC DMX packet with Run Length Encoding (RLE) compression.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBWireshark - ENTTEC DMX Data RLE Buffer OverflowExploitDB exploitby non-customers crewNot analyzed1 file
References
Showing 12 of 23FEDORA-2011-0167Vendor advisory
http://lists.fedoraproject.org/pipermail/package-announce/2011-January/053061.html [oss-security] 20101231 CVE Request: Wiresharkmailing list
http://openwall.com/lists/oss-security/2010/12/31/7 [oss-security] 20110103 Re: CVE Request: Wiresharkmailing list
http://openwall.com/lists/oss-security/2011/01/03/8 70244vdb entry
http://osvdb.org/70244 42767Third-party advisory
http://secunia.com/advisories/42767 42853Third-party advisory
http://secunia.com/advisories/42853 42910Third-party advisory
http://secunia.com/advisories/42910 42914Third-party advisory
http://secunia.com/advisories/42914 DSA-2144Vendor advisory
http://www.debian.org/security/2011/dsa-2144 MDVSA-2011:002Vendor advisory
http://www.mandriva.com/security/advisories?name=MDVSA-2011:002 RHSA-2011:0013Vendor advisory
http://www.redhat.com/support/errata/RHSA-2011-0013.html