CVE-2013-7114: Buffer Overflow
Multiple buffer overflows in the createntlmsspv2key function in epan/dissectors/packet-ntlmssp.c in the NTLMSSP v2 dissector in Wireshark 1.8.x before 1.8.12 and 1.10.x before 1.10.4 allow remote attackers to cause a denial of service (application crash) via a long domain name in a packet.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2013-7114?
CVE-2013-7114 has a severity classification that allows remote attackers to cause a denial of service through application crashes.
How do I fix CVE-2013-7114?
To fix CVE-2013-7114, upgrade Wireshark to version 1.8.12 or 1.10.4 or later.
What software is affected by CVE-2013-7114?
CVE-2013-7114 affects Wireshark versions 1.8.0 to 1.8.11 and 1.10.0 to 1.10.3.
What type of vulnerability is CVE-2013-7114?
CVE-2013-7114 is a buffer overflow vulnerability found in the NTLMSSP v2 dissector.
Can CVE-2013-7114 lead to data breaches?
CVE-2013-7114 may not directly lead to data breaches but can cause application crashes that impact data analysis.