CVE-2016-4078: Input Validation
Published Apr 25, 2016
·Updated
The IEEE 802.11 dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not properly restrict element lists, which allows remote attackers to cause a denial of service (deep recursion and application crash) via a crafted packet, related to epan/dissectors/packet-capwap.c and epan/dissectors/packet-ieee80211.c.
Affected Software
14 affected components
Wireshark Wireshark=1.12.0
Wireshark Wireshark=1.12.1
Wireshark Wireshark=1.12.2
Wireshark Wireshark=1.12.3
Wireshark Wireshark=1.12.4
Wireshark Wireshark=1.12.5
Wireshark Wireshark=1.12.6
Wireshark Wireshark=1.12.7
Wireshark Wireshark=1.12.8
Wireshark Wireshark=1.12.9
Wireshark Wireshark=1.12.10
Wireshark Wireshark=2.0.0
Wireshark Wireshark=2.0.1
Wireshark Wireshark=2.0.2
Event History
Apr 25, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-4078?
CVE-2016-4078 is classified as a denial of service vulnerability.
2
How do I fix CVE-2016-4078?
To resolve CVE-2016-4078, upgrade to Wireshark version 1.12.11 or 2.0.3 or later.
3
Which versions of Wireshark are affected by CVE-2016-4078?
CVE-2016-4078 affects Wireshark versions 1.12.0 to 1.12.10 and 2.0.0 to 2.0.2.
4
What type of attack is associated with CVE-2016-4078?
CVE-2016-4078 allows remote attackers to cause an application crash through crafted packets.
5
Is it safe to use Wireshark versions impacted by CVE-2016-4078?
Using Wireshark versions impacted by CVE-2016-4078 poses a risk of denial of service attacks.