CVE Vulnerabilities

CVE-2008-1072

Published: Feb 28, 2008 | Modified: Oct 11, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.7 MEDIUM
AV:L/AC:M/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu
LOW

The TFTP dissector in Wireshark (formerly Ethereal) 0.6.0 through 0.99.7, when running on Ubuntu 7.10, allows remote attackers to cause a denial of service (crash or memory consumption) via a malformed packet, possibly related to a Cairo library bug.

Affected Software

Name Vendor Start Version End Version
Wireshark Wireshark 0.6 (including) 0.6 (including)
Wireshark Wireshark 0.7.9 (including) 0.7.9 (including)
Wireshark Wireshark 0.8.16 (including) 0.8.16 (including)
Wireshark Wireshark 0.9.10 (including) 0.9.10 (including)
Wireshark Wireshark 0.10 (including) 0.10 (including)
Wireshark Wireshark 0.10.4 (including) 0.10.4 (including)
Wireshark Wireshark 0.10.13 (including) 0.10.13 (including)
Wireshark Wireshark 0.99 (including) 0.99 (including)
Wireshark Wireshark 0.99.1 (including) 0.99.1 (including)
Wireshark Wireshark 0.99.2 (including) 0.99.2 (including)
Wireshark Wireshark 0.99.3 (including) 0.99.3 (including)
Wireshark Wireshark 0.99.4 (including) 0.99.4 (including)
Wireshark Wireshark 0.99.5 (including) 0.99.5 (including)
Wireshark Wireshark 0.99.6 (including) 0.99.6 (including)
Wireshark Wireshark 0.99.7 (including) 0.99.7 (including)
Red Hat Enterprise Linux 3 RedHat wireshark-0:1.0.3-EL3.3 *
Red Hat Enterprise Linux 4 RedHat wireshark-0:1.0.3-3.el4_7 *
Red Hat Enterprise Linux 5 RedHat wireshark-0:1.0.3-4.el5_2 *
Ethereal Ubuntu dapper *
Ethereal Ubuntu upstream *
Wireshark Ubuntu devel *
Wireshark Ubuntu edgy *
Wireshark Ubuntu feisty *
Wireshark Ubuntu gutsy *
Wireshark Ubuntu hardy *
Wireshark Ubuntu intrepid *
Wireshark Ubuntu jaunty *
Wireshark Ubuntu karmic *
Wireshark Ubuntu upstream *

References