CVE Vulnerabilities

CVE-2014-2283

Published: Mar 11, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
4.3 MODERATE
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

epan/dissectors/packet-rlc in the RLC dissector in Wireshark 1.8.x before 1.8.13 and 1.10.x before 1.10.6 uses inconsistent memory-management approaches, which allows remote attackers to cause a denial of service (use-after-free error and application crash) via a crafted UMTS Radio Link Control packet.

Affected Software

NameVendorStart VersionEnd Version
WiresharkWireshark1.8.0 (including)1.8.0 (including)
WiresharkWireshark1.8.1 (including)1.8.1 (including)
WiresharkWireshark1.8.2 (including)1.8.2 (including)
WiresharkWireshark1.8.3 (including)1.8.3 (including)
WiresharkWireshark1.8.4 (including)1.8.4 (including)
WiresharkWireshark1.8.5 (including)1.8.5 (including)
WiresharkWireshark1.8.6 (including)1.8.6 (including)
WiresharkWireshark1.8.7 (including)1.8.7 (including)
WiresharkWireshark1.8.8 (including)1.8.8 (including)
WiresharkWireshark1.8.9 (including)1.8.9 (including)
WiresharkWireshark1.8.10 (including)1.8.10 (including)
WiresharkWireshark1.8.11 (including)1.8.11 (including)
WiresharkWireshark1.8.12 (including)1.8.12 (including)
Red Hat Enterprise Linux 6RedHatwireshark-0:1.8.10-7.el6_5*
WiresharkUbuntudevel*
WiresharkUbuntuesm-infra-legacy/trusty*
WiresharkUbuntulucid*
WiresharkUbuntusaucy*
WiresharkUbuntutrusty*
WiresharkUbuntutrusty/esm*
WiresharkUbuntuupstream*

References