CVE Vulnerabilities

CVE-2011-2698

Published: Aug 23, 2011 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
4.3 LOW
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
LOW

Off-by-one error in the elem_cell_id_aux function in epan/dissectors/packet-ansi_a.c in the ANSI MAP dissector in Wireshark 1.4.x before 1.4.8 and 1.6.x before 1.6.1 allows remote attackers to cause a denial of service (infinite loop) via an invalid packet.

Affected Software

Name Vendor Start Version End Version
Wireshark Wireshark 1.4.0 (including) 1.4.0 (including)
Wireshark Wireshark 1.4.1 (including) 1.4.1 (including)
Wireshark Wireshark 1.4.2 (including) 1.4.2 (including)
Wireshark Wireshark 1.4.3 (including) 1.4.3 (including)
Wireshark Wireshark 1.4.4 (including) 1.4.4 (including)
Wireshark Wireshark 1.4.5 (including) 1.4.5 (including)
Wireshark Wireshark 1.4.6 (including) 1.4.6 (including)
Wireshark Wireshark 1.4.7 (including) 1.4.7 (including)
Wireshark Wireshark 1.6.0 (including) 1.6.0 (including)
Red Hat Enterprise Linux 5 RedHat wireshark-0:1.0.15-5.el5 *
Red Hat Enterprise Linux 6 RedHat wireshark-0:1.2.15-2.el6_2.1 *
Wireshark Ubuntu hardy *
Wireshark Ubuntu lucid *
Wireshark Ubuntu maverick *
Wireshark Ubuntu natty *
Wireshark Ubuntu upstream *

References