Integer underflow in the visual_read function in wiretap/visual.c in Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows remote attackers to cause a denial of service (application crash) via a malformed Visual Networks file that triggers a heap-based buffer over-read.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Wireshark | Wireshark | 1.2 (including) | 1.2 (including) |
Wireshark | Wireshark | 1.2.0 (including) | 1.2.0 (including) |
Wireshark | Wireshark | 1.2.1 (including) | 1.2.1 (including) |
Wireshark | Wireshark | 1.2.2 (including) | 1.2.2 (including) |
Wireshark | Wireshark | 1.2.3 (including) | 1.2.3 (including) |
Wireshark | Wireshark | 1.2.4 (including) | 1.2.4 (including) |
Wireshark | Wireshark | 1.2.5 (including) | 1.2.5 (including) |
Wireshark | Wireshark | 1.2.6 (including) | 1.2.6 (including) |
Wireshark | Wireshark | 1.2.7 (including) | 1.2.7 (including) |
Wireshark | Wireshark | 1.2.8 (including) | 1.2.8 (including) |
Wireshark | Wireshark | 1.2.9 (including) | 1.2.9 (including) |
Wireshark | Wireshark | 1.2.10 (including) | 1.2.10 (including) |
Wireshark | Wireshark | 1.2.11 (including) | 1.2.11 (including) |
Wireshark | Wireshark | 1.2.12 (including) | 1.2.12 (including) |
Wireshark | Wireshark | 1.2.13 (including) | 1.2.13 (including) |
Wireshark | Wireshark | 1.2.14 (including) | 1.2.14 (including) |
Wireshark | Wireshark | 1.2.15 (including) | 1.2.15 (including) |
Wireshark | Wireshark | 1.2.16 (including) | 1.2.16 (including) |
Red Hat Enterprise Linux 5 | RedHat | wireshark-0:1.0.15-5.el5 | * |
Red Hat Enterprise Linux 6 | RedHat | wireshark-0:1.2.15-2.el6_2.1 | * |
Wireshark | Ubuntu | hardy | * |
Wireshark | Ubuntu | lucid | * |
Wireshark | Ubuntu | maverick | * |
Wireshark | Ubuntu | natty | * |
Wireshark | Ubuntu | upstream | * |