[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250038

 
 

909

 
 

195843

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2023-2023-348 --- wireshark

ID: oval:org.secpod.oval:def:19500406Date: (C)2024-01-04   (M)2024-03-06
Class: PATCHFamily: unix




Due to a failure in validating the length provided by an attacker-crafted CP2179 packet, Wireshark versions 2.0.0 through 4.0.7 is susceptible to a divide by zero allowing for a denial of service attack. BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file BT SDP dissector memory leak in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file

Platform:
Amazon Linux 2023
Product:
wireshark
Reference:
ALAS2023-2023-348
CVE-2023-2906
CVE-2023-4511
CVE-2023-4512
CVE-2023-4513
CVE    4
CVE-2023-4512
CVE-2023-2906
CVE-2023-4513
CVE-2023-4511
...
CPE    1
cpe:/a:wireshark:wireshark

© SecPod Technologies