CVE-2010-2995: Buffer Overflow
The SigComp Universal Decompressor Virtual Machine (UDVM) in Wireshark 0.10.8 through 1.0.14 and 1.2.0 through 1.2.9 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to sigcomp-udvm.c and an off-by-one error, which triggers a buffer overflow, different vulnerabilities than CVE-2010-2287.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2995?
CVE-2010-2995 has a medium severity rating as it can lead to denial of service and potential remote code execution.
How do I fix CVE-2010-2995?
To fix CVE-2010-2995, upgrade Wireshark to versions 1.2.10 or later for 1.2.x series, or 1.0.15 or later for 1.0.x series.
Which versions of Wireshark are affected by CVE-2010-2995?
CVE-2010-2995 affects Wireshark versions from 0.10.8 to 1.0.14 and 1.2.0 to 1.2.9.
What type of vulnerability is CVE-2010-2995?
CVE-2010-2995 is an off-by-one error vulnerability leading to buffer overflows in the SigComp Universal Decompressor.
Can CVE-2010-2995 be exploited remotely?
Yes, CVE-2010-2995 can be exploited remotely to crash the application or potentially execute arbitrary code.