CVE-2016-6512
MEDIUMWireshark 2.x < 2.0.5 - Denial of Service via Crafted Packet in MMSE/WAP/WBXML/WSP Dissectors
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2016-6512. PoCs published by Antti Levomäki.
AI-analyzed exploit summary This exploit demonstrates a memory exhaustion vulnerability in TShark (Wireshark) 2.0.2, where a specially crafted PCAP file with a single UDP packet causes excessive memory consumption (>4GB). The PoC is provided as a downloadable PCAP file.
Description
epan/dissectors/packet-wap.c in Wireshark 2.x before 2.0.5 omits an overflow check in the tvb_get_guintvar function, which allows remote attackers to cause a denial of service (infinite loop) via a crafted packet, related to the MMSE, WAP, WBXML, and WSP dissectors.
Exploits (1)
This exploit demonstrates a memory exhaustion vulnerability in TShark (Wireshark) 2.0.2, where a specially crafted PCAP file with a single UDP packet causes excessive memory consumption (>4GB). The PoC is provided as a downloadable PCAP file.
References (7)
Scores
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H