Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-4298

Опубликовано: 16 авг. 2012
Источник: nvd
CVSS2: 5.4
EPSS Низкий

Описание

Integer signedness error in the vwr_read_rec_data_ethernet function in wiretap/vwr.c in the Ixia IxVeriWave file parser in Wireshark 1.8.x before 1.8.2 allows user-assisted remote attackers to execute arbitrary code via a crafted packet-trace file that triggers a buffer overflow.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:sun:sunos:5.11:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:a:wireshark:wireshark:1.8.0:*:*:*:*:*:*:*
cpe:2.3:a:wireshark:wireshark:1.8.1:*:*:*:*:*:*:*

EPSS

Процентиль: 76%
0.00919
Низкий

5.4 Medium

CVSS2

Дефекты

CWE-189

Связанные уязвимости

ubuntu
больше 13 лет назад

Integer signedness error in the vwr_read_rec_data_ethernet function in wiretap/vwr.c in the Ixia IxVeriWave file parser in Wireshark 1.8.x before 1.8.2 allows user-assisted remote attackers to execute arbitrary code via a crafted packet-trace file that triggers a buffer overflow.

redhat
больше 13 лет назад

Integer signedness error in the vwr_read_rec_data_ethernet function in wiretap/vwr.c in the Ixia IxVeriWave file parser in Wireshark 1.8.x before 1.8.2 allows user-assisted remote attackers to execute arbitrary code via a crafted packet-trace file that triggers a buffer overflow.

debian
больше 13 лет назад

Integer signedness error in the vwr_read_rec_data_ethernet function in ...

github
больше 3 лет назад

Integer signedness error in the vwr_read_rec_data_ethernet function in wiretap/vwr.c in the Ixia IxVeriWave file parser in Wireshark 1.8.x before 1.8.2 allows user-assisted remote attackers to execute arbitrary code via a crafted packet-trace file that triggers a buffer overflow.

EPSS

Процентиль: 76%
0.00919
Низкий

5.4 Medium

CVSS2

Дефекты

CWE-189