CVE-2015-8739: Input Validation
The ipmifmtudpport function in epan/dissectors/packet-ipmi.c in the IPMI dissector in Wireshark 2.0.x before 2.0.1 improperly attempts to access a packet scope, which allows remote attackers to cause a denial of service (assertion failure and application exit) via a crafted packet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-8739?
CVE-2015-8739 has a severity level classified as low since it causes a denial of service through application assertion failure.
How do I fix CVE-2015-8739?
To fix CVE-2015-8739, upgrade your Wireshark to version 2.0.1 or later.
What does CVE-2015-8739 affect?
CVE-2015-8739 affects the IPMI dissector in Wireshark versions 2.0.0 and earlier.
What type of vulnerability is CVE-2015-8739?
CVE-2015-8739 is classified as a denial of service vulnerability due to improper access handling.
Who is impacted by CVE-2015-8739?
Users of Wireshark version 2.0.0 and earlier who process crafted packets may be impacted by CVE-2015-8739.