CVE-2015-3811: Medium severity oracle solaris and zettabyte file system (zfs) vulnerability
epan/dissectors/packet-wcp.c in the WCP dissector in Wireshark 1.10.x before 1.10.14 and 1.12.x before 1.12.5 improperly refers to previously processed bytes, which allows remote attackers to cause a denial of service (application crash) via a crafted packet, a different vulnerability than CVE-2015-2188.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-3811?
CVE-2015-3811 has been classified as a denial of service vulnerability that can cause application crashes.
How do I fix CVE-2015-3811?
To fix CVE-2015-3811, you should upgrade to Wireshark version 1.10.14, 1.12.5, or later releases.
What versions of Wireshark are affected by CVE-2015-3811?
CVE-2015-3811 affects Wireshark versions 1.10.x before 1.10.14 and 1.12.x before 1.12.5.
Can CVE-2015-3811 be exploited remotely?
Yes, CVE-2015-3811 can be exploited remotely using crafted packets to cause a denial of service.
What is the impact of CVE-2015-3811 on affected systems?
The impact of CVE-2015-3811 is the potential for an application crash in affected versions of Wireshark.