CVE-2011-1590
CVE-2011-1590
The X.509if dissector in Wireshark 1.2.x before 1.2.16 and 1.4.x before 1.4.5 does not properly initialize certain global variables, which allows remote attackers to cause a denial of service (application crash) via a crafted .pcap file.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://anonsvn.wireshark.org/viewvc?revision=36608&view=revisionhttp://lists.fedoraproject.org/pipermail/package-announce/2011-April/058900.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-April/058983.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-April/058993.htmlhttp://openwall.com/lists/oss-security/2011/04/18/2http://openwall.com/lists/oss-security/2011/04/18/8https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5754https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5793http://secunia.com/advisories/44172http://secunia.com/advisories/44374http://secunia.com/advisories/44822http://secunia.com/advisories/45149