Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.128010
Kategorie:Denial of Service
Titel:Wireshark < 4.2.0 DoS Vulnerabilities
Zusammenfassung:Wireshark is prone to multiple denial of service (DoS); vulnerabilities.
Beschreibung:Summary:
Wireshark is prone to multiple denial of service (DoS)
vulnerabilities.

Vulnerability Insight:
Multiple flaws exist due to:

- An issue in Wireshark function dissect_bgp_open of file packet-bgp.c.

- A buffer overflow vulnerability in ws_manuf_lookup_str of file pan/addr_resolv.c.

- A buffer overflow vulnerability in format_fractional_part_nsecs of file wsutil/to_str.c.

For more information about the vulnerabilities refer to Reference links.

Vulnerability Impact:
Successful exploitation may allow
remote attackers to perform denial of service on an affected system.

Affected Software/OS:
Wireshark versions prior to 4.2.0.

Solution:
Update to version 4.2.0 or later.

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:L/Au:S/C:N/I:N/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2024-24478
https://gist.github.com/1047524396/e82c55147cd3cb62ef20cbdb0ec83694
https://github.com/wireshark/wireshark/commit/80a4dc55f4d2fa33c2b36a99406500726d3faaef
https://gitlab.com/wireshark/wireshark/-/issues/19347
Common Vulnerability Exposure (CVE) ID: CVE-2024-24476
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZT2BX7UARZVVWKITSZMHW7BHXGIKRSR2/
https://gist.github.com/1047524396/369ba0ccffe255cf8142208b6142be2b
https://github.com/wireshark/wireshark/commit/108217f4bb1afb8b25fc705c2722b3e328b1ad78
https://gitlab.com/wireshark/wireshark/-/issues/19344
Common Vulnerability Exposure (CVE) ID: CVE-2024-24479
https://gist.github.com/1047524396/c50ad17e9a1a18990043a7cd27814c78
https://github.com/wireshark/wireshark/commit/c3720cff158c265dec2a0c6104b1d65954ae6bfd
CopyrightCopyright (C) 2024 Greenbone AG

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.