Wireshark Misaligned Memory Denial of Service Vulnerability



EKU-ID: 2185 CVE: 2012-2394 OSVDB-ID:
Author: Klaus Heckelmann Published: 2012-05-25 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


Source: http://www.securityfocus.com/bid/53653/info

Wireshark is prone to a denial-of-service vulnerability.

An attacker can exploit this issue to crash the affected application, denying service to legitimate users.

Wireshark versions 1.6.0 through 1.6.7 and versions 1.4.0 through 1.4.12 are vulnerable.

PoC:
http://www.exploit-db.com/sploits/18920.pcap