Wireshark - ZigBee ZCL Dissector Infinite Loop Denial of Service



EKU-ID: 22091 CVE: CVE-2010-4301 OSVDB-ID:
Author: Fred Fierling Published: 2011-01-11 Verified: Not Verified
Download:

Rating

☆☆☆☆☆
Home


Source:  https://www.securityfocus.com/bid/44986/info

Wireshark is prone to a remote denial-of-service vulnerability because it fails to properly handle certain types of packets.

Attackers can exploit this issue to cause the application to enter an infinite loop which may cause denial-of-service conditions.

Wireshark 1.4.0 to 1.4.1 are vulnerable.

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/15973.pcap (44986.pcap)