Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.804915
Kategorie:Denial of Service
Titel:Wireshark Denial of Service Vulnerability-03 (Sep 2014) - Windows
Zusammenfassung:Wireshark is prone to a denial of service (DoS) vulnerability.
Beschreibung:Summary:
Wireshark is prone to a denial of service (DoS) vulnerability.

Vulnerability Insight:
Multiple flaws exist due to:

- the SDP dissector creates duplicate hashtables for a media channel.

- the Use-after-free vulnerability in the SDP dissector.

Vulnerability Impact:
Successful exploitation will allow
attacker to cause denial of service attack via:

- a crafted packet to the RTP dissector.

- a crafted packet that leverages split memory ownership between
the SDP and RTP dissectors.

Affected Software/OS:
Wireshark version 1.10.x before 1.10.10 on Windows

Solution:
Upgrade to Wireshark 1.10.10 or later.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2014-6421
RedHat Security Advisories: RHSA-2014:1676
http://rhn.redhat.com/errata/RHSA-2014-1676.html
RedHat Security Advisories: RHSA-2014:1677
http://rhn.redhat.com/errata/RHSA-2014-1677.html
http://secunia.com/advisories/60280
http://secunia.com/advisories/61929
http://secunia.com/advisories/61933
SuSE Security Announcement: SUSE-SU-2014:1221 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00033.html
SuSE Security Announcement: openSUSE-SU-2014:1249 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-09/msg00058.html
Common Vulnerability Exposure (CVE) ID: CVE-2014-6422
Debian Security Information: DSA-3049 (Google Search)
http://www.debian.org/security/2014/dsa-3049
http://secunia.com/advisories/60578
CopyrightCopyright (C) 2014 Greenbone AG

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.