CVE-2011-1591
Wireshark <1.4.5 - Buffer Overflow
Title source: llmDescription
Stack-based buffer overflow in the DECT dissector in epan/dissectors/packet-dect.c in Wireshark 1.4.x before 1.4.5 allows remote attackers to execute arbitrary code via a crafted .pcap file.
Exploits (6)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/17195
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubylocalwindows
https://www.exploit-db.com/exploits/17186
metasploit
WORKING POC
GOOD
by Paul Makowski, sickness · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/fileformat/wireshark_packet_dect.rb
exploitdb
WORKING POC
VERIFIED
by sickness · pythonlocalwindows
https://www.exploit-db.com/exploits/17185
metasploit
WORKING POC
GOOD
by Paul Makowski, sickness · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/misc/wireshark_packet_dect.rb
References (20)
Scores
EPSS
0.7721
EPSS Percentile
98.9%
Classification
CWE
CWE-119
Status
draft
Affected Products (5)
wireshark/wireshark
wireshark/wireshark
wireshark/wireshark
wireshark/wireshark
wireshark/wireshark
Timeline
Published
Apr 29, 2011
Tracked Since
Feb 18, 2026