First published: Mon Jul 29 2013(Updated: )
Integer signedness error in the dissect_headers function in epan/dissectors/packet-btobex.c in the Bluetooth OBEX dissector in Wireshark 1.10.x before 1.10.1 allows remote attackers to cause a denial of service (infinite loop) via a crafted packet.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Wireshark Wireshark | =1.10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-4928 has a moderate severity level as it allows remote attackers to cause a denial of service.
To fix CVE-2013-4928, update Wireshark to version 1.10.1 or later.
CVE-2013-4928 affects the Bluetooth OBEX dissector in Wireshark.
CVE-2013-4928 does not specifically lead to data loss, but it causes an infinite loop leading to denial of service.
Wireshark versions prior to 1.10.1, specifically version 1.10.0, are impacted by CVE-2013-4928.