CVE-2007-3392: Medium severity Wireshark Wireshark vulnerability
Published Jun 26, 2007
·Updated
Wireshark before 0.99.6 allows remote attackers to cause a denial of service via malformed (1) SSL or (2) MMS packets that trigger an infinite loop.
Affected Software
1 affected component
Wireshark Wireshark<=0.99.5
Event History
Jun 26, 2007
CVE Published
12:30 AM
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3392?
CVE-2007-3392 is categorized as a denial of service vulnerability that can impact the availability of the affected application.
2
How does CVE-2007-3392 affect Wireshark?
CVE-2007-3392 allows remote attackers to cause Wireshark to enter an infinite loop through malformed SSL or MMS packets.
3
Which versions of Wireshark are affected by CVE-2007-3392?
CVE-2007-3392 affects Wireshark versions prior to 0.99.6.
4
How do I fix CVE-2007-3392?
To fix CVE-2007-3392, upgrade Wireshark to version 0.99.6 or later.
5
What types of packets trigger the vulnerability in CVE-2007-3392?
Malformed SSL or MMS packets can trigger the denial of service vulnerability in CVE-2007-3392.