CVE-2010-4301: Medium severity wireshark vulnerability
Published Nov 26, 2010
·Updated
epan/dissectors/packet-zbee-zcl.c in the ZigBee ZCL dissector in Wireshark 1.4.0 through 1.4.1 allows remote attackers to cause a denial of service (infinite loop) via a crafted ZCL packet, related to Discover Attributes.
Affected Software
2 affected components
Wireshark Wireshark=1.4.0
Wireshark Wireshark=1.4.1
Remediation
Patch Available
Event History
Nov 26, 2010
CVE Published
via MITRE·06:23 PM
Data Sourced
via MITRE·06:23 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-4301?
CVE-2010-4301 is classified as a moderate severity vulnerability due to its potential to cause a denial of service.
2
How do I fix CVE-2010-4301?
To resolve CVE-2010-4301, upgrade Wireshark to versions 1.4.2 or later.
3
What software is affected by CVE-2010-4301?
CVE-2010-4301 affects Wireshark versions 1.4.0 and 1.4.1.
4
What type of attack does CVE-2010-4301 facilitate?
CVE-2010-4301 allows remote attackers to execute a denial of service attack through crafted ZCL packets.
5
Is CVE-2010-4301 an exploit that can be remotely executed?
Yes, CVE-2010-4301 can be exploited remotely by sending specially crafted ZCL packets.