CVE-2008-3933: Input Validation
Published Sep 4, 2008
·Updated
Wireshark (formerly Ethereal) 0.10.14 through 1.0.2 allows attackers to cause a denial of service (crash) via a packet with crafted zlib-compressed data that triggers an invalid read in the tvbuncompress function.
Affected Software
22 affected components
Wireshark Wireshark=0.99.8
Wireshark Wireshark=0.10.3
Wireshark Wireshark=0.99.3
Wireshark Wireshark=0.10.6
Wireshark Wireshark=0.99.0
Wireshark Wireshark=0.10.4
Wireshark Wireshark=1.0.1
Wireshark Wireshark=0.10.14
Wireshark Wireshark=0.10.9
Wireshark Wireshark=0.10.7
Wireshark Wireshark=0.10.8
Wireshark Wireshark=0.99.6
Wireshark Wireshark=1.0.2
Wireshark Wireshark=0.99.2
Wireshark Wireshark=0.99.1
Wireshark Wireshark=0.10.2
Wireshark Wireshark=0.10.5
Wireshark Wireshark=0.99.5
Wireshark Wireshark=0.99.4
Wireshark Wireshark=1.0.0
Wireshark Wireshark=0.99.6a
Wireshark Wireshark=0.99.7
Remediation
Patch Available
Event History
Sep 4, 2008
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3933?
CVE-2008-3933 is classified as a denial of service vulnerability, allowing attackers to crash the application.
2
How do I fix CVE-2008-3933?
To fix CVE-2008-3933, upgrade Wireshark to a version later than 1.0.2.
3
Which versions of Wireshark are affected by CVE-2008-3933?
CVE-2008-3933 affects Wireshark versions 0.10.14 through 1.0.2.
4
What impact does CVE-2008-3933 have on users?
The impact of CVE-2008-3933 is that it can cause the application to crash upon processing specially crafted packets.
5
Is there a known exploit for CVE-2008-3933?
Yes, CVE-2008-3933 can be exploited by sending a packet with crafted zlib-compressed data to trigger a crash.