CVE Vulnerabilities

CVE-2013-2486

Published: Mar 07, 2013 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.1 MEDIUM
AV:A/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu

The dissect_diagnosticrequest function in epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark 1.8.x before 1.8.6 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (infinite loop) via crafted integer values in a packet.

Affected Software

Name Vendor Start Version End Version
Debian_linux Debian 7.0 (including) 7.0 (including)
Opensuse Opensuse 11.4 (including) 11.4 (including)
Opensuse Opensuse 12.1 (including) 12.1 (including)
Opensuse Opensuse 12.2 (including) 12.2 (including)
Opensuse Opensuse 12.3 (including) 12.3 (including)

References