Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-4081

Опубликовано: 09 июн. 2013
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5

Описание

The http_payload_subdissector function in epan/dissectors/packet-http.c in the HTTP dissector in Wireshark 1.6.x before 1.6.16 and 1.8.x before 1.8.8 does not properly determine when to use a recursive approach, which allows remote attackers to cause a denial of service (stack consumption) via a crafted packet.

РелизСтатусПримечание
devel

not-affected

1.12.1+g01b65bf-2
esm-apps/xenial

not-affected

1.12.1+g01b65bf-2
esm-infra-legacy/trusty

not-affected

1.10.6-1
lucid

ignored

end of life
precise

ignored

end of life
precise/esm

DNE

precise was needed
quantal

ignored

end of life
raring

released

1.8.2-5wheezy4build0.13.04.1
saucy

ignored

end of life
trusty

not-affected

1.10.6-1

Показывать по

EPSS

Процентиль: 78%
0.01262
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
около 12 лет назад

The http_payload_subdissector function in epan/dissectors/packet-http.c in the HTTP dissector in Wireshark 1.6.x before 1.6.16 and 1.8.x before 1.8.8 does not properly determine when to use a recursive approach, which allows remote attackers to cause a denial of service (stack consumption) via a crafted packet.

nvd
около 12 лет назад

The http_payload_subdissector function in epan/dissectors/packet-http.c in the HTTP dissector in Wireshark 1.6.x before 1.6.16 and 1.8.x before 1.8.8 does not properly determine when to use a recursive approach, which allows remote attackers to cause a denial of service (stack consumption) via a crafted packet.

debian
около 12 лет назад

The http_payload_subdissector function in epan/dissectors/packet-http. ...

github
около 3 лет назад

The http_payload_subdissector function in epan/dissectors/packet-http.c in the HTTP dissector in Wireshark 1.6.x before 1.6.16 and 1.8.x before 1.8.8 does not properly determine when to use a recursive approach, which allows remote attackers to cause a denial of service (stack consumption) via a crafted packet.

oracle-oval
около 11 лет назад

ELSA-2014-0341: wireshark security update (MODERATE)

EPSS

Процентиль: 78%
0.01262
Низкий

5 Medium

CVSS2