CVE Vulnerabilities

CVE-2008-1072

Published: Feb 28, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.7 MEDIUM
AV:L/AC:M/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

The TFTP dissector in Wireshark (formerly Ethereal) 0.6.0 through 0.99.7, when running on Ubuntu 7.10, allows remote attackers to cause a denial of service (crash or memory consumption) via a malformed packet, possibly related to a Cairo library bug.

Affected Software

NameVendorStart VersionEnd Version
WiresharkWireshark0.6 (including)0.6 (including)
WiresharkWireshark0.7.9 (including)0.7.9 (including)
WiresharkWireshark0.8.16 (including)0.8.16 (including)
WiresharkWireshark0.9.10 (including)0.9.10 (including)
WiresharkWireshark0.10 (including)0.10 (including)
WiresharkWireshark0.10.4 (including)0.10.4 (including)
WiresharkWireshark0.10.13 (including)0.10.13 (including)
WiresharkWireshark0.99 (including)0.99 (including)
WiresharkWireshark0.99.1 (including)0.99.1 (including)
WiresharkWireshark0.99.2 (including)0.99.2 (including)
WiresharkWireshark0.99.3 (including)0.99.3 (including)
WiresharkWireshark0.99.4 (including)0.99.4 (including)
WiresharkWireshark0.99.5 (including)0.99.5 (including)
WiresharkWireshark0.99.6 (including)0.99.6 (including)
WiresharkWireshark0.99.7 (including)0.99.7 (including)
Red Hat Enterprise Linux 3RedHatwireshark-0:1.0.3-EL3.3*
Red Hat Enterprise Linux 4RedHatwireshark-0:1.0.3-3.el4_7*
Red Hat Enterprise Linux 5RedHatwireshark-0:1.0.3-4.el5_2*
EtherealUbuntudapper*
EtherealUbuntuupstream*
WiresharkUbuntudevel*
WiresharkUbuntuedgy*
WiresharkUbuntufeisty*
WiresharkUbuntugutsy*
WiresharkUbuntuhardy*
WiresharkUbuntuintrepid*
WiresharkUbuntujaunty*
WiresharkUbuntukarmic*
WiresharkUbuntuupstream*

References