CVE Vulnerabilities

CVE-2011-1140

Published: Mar 03, 2011 | Modified: Sep 19, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

Multiple stack consumption vulnerabilities in the dissect_ms_compressed_string and dissect_mscldap_string functions in Wireshark 1.0.x, 1.2.0 through 1.2.14, and 1.4.0 through 1.4.3 allow remote attackers to cause a denial of service (infinite recursion) via a crafted (1) SMB or (2) Connection-less LDAP (CLDAP) packet.

Affected Software

Name Vendor Start Version End Version
Wireshark Wireshark 1.0 (including) 1.0 (including)
Wireshark Wireshark 1.0.0 (including) 1.0.0 (including)
Wireshark Wireshark 1.0.1 (including) 1.0.1 (including)
Wireshark Wireshark 1.0.2 (including) 1.0.2 (including)
Wireshark Wireshark 1.0.3 (including) 1.0.3 (including)
Wireshark Wireshark 1.0.4 (including) 1.0.4 (including)
Wireshark Wireshark 1.0.5 (including) 1.0.5 (including)
Wireshark Wireshark 1.0.6 (including) 1.0.6 (including)
Wireshark Wireshark 1.0.7 (including) 1.0.7 (including)
Wireshark Wireshark 1.0.8 (including) 1.0.8 (including)
Wireshark Wireshark 1.0.9 (including) 1.0.9 (including)
Wireshark Wireshark 1.0.10 (including) 1.0.10 (including)
Wireshark Wireshark 1.0.11 (including) 1.0.11 (including)
Wireshark Wireshark 1.0.12 (including) 1.0.12 (including)
Wireshark Wireshark 1.0.13 (including) 1.0.13 (including)
Wireshark Wireshark 1.0.14 (including) 1.0.14 (including)
Wireshark Wireshark 1.0.15 (including) 1.0.15 (including)
Wireshark Wireshark 1.0.16 (including) 1.0.16 (including)

References