anonsvn.wireshark.orgConfirmation
http://anonsvn.wireshark.org/viewvc?view=revision&revision=40962 CVE-2012-1593
Wireshark - 'call_dissector()' Null Pointer Dereference Denial of Service
Record summary
CVE-2012-1593 has a selected CVSS score of 3.3; EIP currently links 1 catalogued exploit.
Description
epan/dissectors/packet-ansi_a.c in the ANSI A dissector in Wireshark 1.4.x before 1.4.12 and 1.6.x before 1.6.6 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a malformed packet.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBWireshark - 'call_dissector()' Null Pointer Dereference Denial of ServiceExploitDB exploitby WiresharkNot analyzed1 file
References
Showing 12 of 14FEDORA-2012-5256Vendor advisory
http://lists.fedoraproject.org/pipermail/package-announce/2012-April/078769.html FEDORA-2012-5243Vendor advisory
http://lists.fedoraproject.org/pipermail/package-announce/2012-April/078770.html openSUSE-SU-2012:0558Vendor advisory
http://lists.opensuse.org/opensuse-updates/2012-04/msg00060.html 48548Third-party advisory
http://secunia.com/advisories/48548 48986Third-party advisory
http://secunia.com/advisories/48986 18758exploit
http://www.exploit-db.com/exploits/18758 [oss-security] 20120328 Re: CVE Request: Multiple wireshark security flaws resolved in 1.4.12 and 1.6.6mailing list
http://www.openwall.com/lists/oss-security/2012/03/28/13 1026874vdb entry
http://www.securitytracker.com/id?1026874 wireshark.orgConfirmation
http://www.wireshark.org/security/wnpa-sec-2012-04.html bugs.wireshark.orgConfirmation
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=6823 wireshark-ansia-dos(74361)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/74361