CVE-2009-1267: Medium severity wireshark vulnerability
Published Apr 13, 2009
·Updated
Unspecified vulnerability in the LDAP dissector in Wireshark 0.99.2 through 1.0.6, when running on Windows, allows remote attackers to cause a denial of service (crash) via unknown attack vectors.
Affected Software
17 affected components
Wireshark Wireshark=0.99.2
Wireshark Wireshark=0.99.3
Wireshark Wireshark=0.99.4
Wireshark Wireshark=0.99.5
Wireshark Wireshark=0.99.6
Wireshark Wireshark=0.99.6a
Wireshark Wireshark=0.99.7
Wireshark Wireshark=0.99.8
Wireshark Wireshark=1.0
Wireshark Wireshark=1.0.0
Wireshark Wireshark=1.0.1
Wireshark Wireshark=1.0.2
Wireshark Wireshark=1.0.3
Wireshark Wireshark=1.0.4
Wireshark Wireshark=1.0.5
Wireshark Wireshark=1.0.6
Microsoft Windows
Remediation
Patch Available
Event History
Apr 13, 2009
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Data Sourced
04:30 PM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2009-1267?
CVE-2009-1267 is classified as a denial of service vulnerability that can cause the Wireshark application to crash.
2
How do I fix CVE-2009-1267?
To fix CVE-2009-1267, you should upgrade Wireshark to a version later than 1.0.6.
3
Which versions of Wireshark are affected by CVE-2009-1267?
CVE-2009-1267 affects Wireshark versions 0.99.2 to 1.0.6 on Windows.
4
Can CVE-2009-1267 be exploited remotely?
Yes, CVE-2009-1267 can potentially be exploited by remote attackers.
5
What happens if I do not address CVE-2009-1267?
If CVE-2009-1267 is not addressed, the application could be subject to crashes, impacting network analysis and monitoring.