CVE Vulnerabilities

CVE-2008-4683

Published: Oct 22, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

The dissect_btacl function in packet-bthci_acl.c in the Bluetooth ACL dissector in Wireshark 0.99.2 through 1.0.3 allows remote attackers to cause a denial of service (application crash or abort) via a packet with an invalid length, related to an erroneous tvb_memcpy call.

Affected Software

NameVendorStart VersionEnd Version
WiresharkWireshark0.99.2 (including)0.99.2 (including)
WiresharkWireshark0.99.3 (including)0.99.3 (including)
WiresharkWireshark0.99.4 (including)0.99.4 (including)
WiresharkWireshark0.99.5 (including)0.99.5 (including)
WiresharkWireshark0.99.6 (including)0.99.6 (including)
WiresharkWireshark0.99.6a (including)0.99.6a (including)
WiresharkWireshark0.99.7 (including)0.99.7 (including)
WiresharkWireshark0.99.8 (including)0.99.8 (including)
WiresharkWireshark1.0 (including)1.0 (including)
WiresharkWireshark1.0.0 (including)1.0.0 (including)
WiresharkWireshark1.0.1 (including)1.0.1 (including)
WiresharkWireshark1.0.2 (including)1.0.2 (including)
WiresharkWireshark1.0.3 (including)1.0.3 (including)
Red Hat Enterprise Linux 3RedHatwireshark-0:1.0.6-EL3.3*
Red Hat Enterprise Linux 4RedHatwireshark-0:1.0.6-2.el4_7*
Red Hat Enterprise Linux 5RedHatwireshark-0:1.0.6-2.el5_3*
WiresharkUbuntugutsy*
WiresharkUbuntuhardy*
WiresharkUbuntuintrepid*
WiresharkUbuntuupstream*

References