CVE Vulnerabilities

CVE-2012-6053

Published: Dec 05, 2012 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
4.3 LOW
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

epan/dissectors/packet-usb.c in the USB dissector in Wireshark 1.6.x before 1.6.12 and 1.8.x before 1.8.4 relies on a length field to calculate an offset value, which allows remote attackers to cause a denial of service (infinite loop) via a zero value for this field.

Affected Software

NameVendorStart VersionEnd Version
WiresharkWireshark1.6.0 (including)1.6.0 (including)
WiresharkWireshark1.6.1 (including)1.6.1 (including)
WiresharkWireshark1.6.2 (including)1.6.2 (including)
WiresharkWireshark1.6.3 (including)1.6.3 (including)
WiresharkWireshark1.6.4 (including)1.6.4 (including)
WiresharkWireshark1.6.5 (including)1.6.5 (including)
WiresharkWireshark1.6.6 (including)1.6.6 (including)
WiresharkWireshark1.6.7 (including)1.6.7 (including)
WiresharkWireshark1.6.8 (including)1.6.8 (including)
WiresharkWireshark1.6.9 (including)1.6.9 (including)
WiresharkWireshark1.6.10 (including)1.6.10 (including)
WiresharkWireshark1.6.11 (including)1.6.11 (including)
WiresharkWireshark1.8.0 (including)1.8.0 (including)
WiresharkWireshark1.8.1 (including)1.8.1 (including)
WiresharkWireshark1.8.2 (including)1.8.2 (including)
WiresharkWireshark1.8.3 (including)1.8.3 (including)
WiresharkUbuntuhardy*
WiresharkUbuntulucid*
WiresharkUbuntuoneiric*
WiresharkUbuntuprecise*
WiresharkUbuntuquantal*
WiresharkUbunturaring*
WiresharkUbuntusaucy*
WiresharkUbuntuupstream*

References