Wireshark - DIAMETER Dissector Denial of Service



EKU-ID: 24580 CVE: OSVDB-82099;CVE-2012-2393 OSVDB-ID:
Author: Wireshark Published: 2012-05-24 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/53652/info

Wireshark is prone to a denial-of-service vulnerability because it fails to properly allocate memory.

Successful exploits may allow attacker to crash the affected application, denying service to legitimate users.

Wireshark 1.4.0 to 1.4.12 and 1.6.0 to 1.6.7 are vulnerable.

PoC:
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/18918.pcap