CVE Vulnerabilities

CVE-2012-1595

Published: Apr 11, 2012 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
4.4 MODERATE
AV:L/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
NEGLIGIBLE
root.io logo minimus.io logo echo.ai logo

The pcap_process_pseudo_header function in wiretap/pcap-common.c in Wireshark 1.4.x before 1.4.12 and 1.6.x before 1.6.6 allows remote attackers to cause a denial of service (application crash) via a WTAP_ENCAP_ERF file containing an Extension or Multi-Channel header with an invalid pseudoheader size, related to the pcap and pcap-ng file parsers.

Affected Software

NameVendorStart VersionEnd Version
WiresharkWireshark1.4.0 (including)1.4.0 (including)
WiresharkWireshark1.4.1 (including)1.4.1 (including)
WiresharkWireshark1.4.2 (including)1.4.2 (including)
WiresharkWireshark1.4.3 (including)1.4.3 (including)
WiresharkWireshark1.4.4 (including)1.4.4 (including)
WiresharkWireshark1.4.5 (including)1.4.5 (including)
WiresharkWireshark1.4.6 (including)1.4.6 (including)
WiresharkWireshark1.4.7 (including)1.4.7 (including)
WiresharkWireshark1.4.8 (including)1.4.8 (including)
WiresharkWireshark1.4.9 (including)1.4.9 (including)
WiresharkWireshark1.4.10 (including)1.4.10 (including)
WiresharkWireshark1.4.11 (including)1.4.11 (including)
Red Hat Enterprise Linux 6RedHatwireshark-0:1.2.15-2.el6_2.1*
WiresharkUbuntunatty*
WiresharkUbuntuoneiric*
WiresharkUbuntuupstream*

References