Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-6430

Опубликовано: 20 сент. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

The SnifferDecompress function in wiretap/ngsniffer.c in the DOS Sniffer file parser in Wireshark 1.10.x before 1.10.10 and 1.12.x before 1.12.1 does not validate bitmask data, which allows remote attackers to cause a denial of service (application crash) via a crafted file.

РелизСтатусПримечание
artful

not-affected

1.12.1+g01b65bf-2
bionic

not-affected

1.12.1+g01b65bf-2
devel

not-affected

1.12.1+g01b65bf-2
esm-apps/bionic

not-affected

1.12.1+g01b65bf-2
esm-apps/xenial

not-affected

1.12.1+g01b65bf-2
esm-infra-legacy/trusty

not-affected

1.12.1+g01b65bf-4+deb8u11ubuntu0.14.04.1
lucid

ignored

end of life
precise

ignored

end of life
precise/esm

DNE

precise was needed
trusty

not-affected

1.12.1+g01b65bf-4+deb8u11ubuntu0.14.04.1

Показывать по

EPSS

Процентиль: 82%
0.01869
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
почти 11 лет назад

The SnifferDecompress function in wiretap/ngsniffer.c in the DOS Sniffer file parser in Wireshark 1.10.x before 1.10.10 and 1.12.x before 1.12.1 does not validate bitmask data, which allows remote attackers to cause a denial of service (application crash) via a crafted file.

nvd
почти 11 лет назад

The SnifferDecompress function in wiretap/ngsniffer.c in the DOS Sniffer file parser in Wireshark 1.10.x before 1.10.10 and 1.12.x before 1.12.1 does not validate bitmask data, which allows remote attackers to cause a denial of service (application crash) via a crafted file.

debian
почти 11 лет назад

The SnifferDecompress function in wiretap/ngsniffer.c in the DOS Sniff ...

github
около 3 лет назад

The SnifferDecompress function in wiretap/ngsniffer.c in the DOS Sniffer file parser in Wireshark 1.10.x before 1.10.10 and 1.12.x before 1.12.1 does not validate bitmask data, which allows remote attackers to cause a denial of service (application crash) via a crafted file.

fstec
почти 11 лет назад

Уязвимость программного обеспечения Wireshark Network Protocol Analyzer, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации

EPSS

Процентиль: 82%
0.01869
Низкий

5 Medium

CVSS2