REDHAT-BUG-710097: Double Free

Published Jun 2, 2011
·
Updated

A double free flaw was found in the way Wireshark uncompressed a zlib compressed packet inside a message of tvbuff buffer. A remote attacker could create a specially-crafted capture file, which once opened, by a local, unsuspecting user could lead to wireshark application crash.

References: [1] https://bugs.wireshark.org/bugzilla/showbug.cgi?id=5908 (upstream bug report, not public) [2] http://www.openwall.com/lists/oss-security/2011/05/31/20 (CVE request) [3] http://www.wireshark.org/security/wnpa-sec-2011-07.html (upstream advisory)

Upstream patch: [4] http://anonsvn.wireshark.org/viewvc?view=revision&revision=37081

Affected Software

1 affected component
Wireshark Wireshark

Event History

Jun 2, 2011
Data Sourced
via Red Hat·12:51 PM
DescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of REDHAT-BUG-710097?

REDHAT-BUG-710097 is classified as a critical vulnerability due to its potential to cause application crashes.

2

How do I fix REDHAT-BUG-710097?

To fix REDHAT-BUG-710097, update your Wireshark to the latest version where the vulnerability is patched.

3

Who is affected by REDHAT-BUG-710097?

Users of Wireshark that open specially-crafted capture files are at risk of the REDHAT-BUG-710097 vulnerability.

4

What kind of attack does REDHAT-BUG-710097 enable?

REDHAT-BUG-710097 enables remote attackers to crash Wireshark by triggering a double free flaw.

5

What should I do if I cannot update my Wireshark to address REDHAT-BUG-710097?

If you cannot update, avoid opening untrusted or unknown capture files to mitigate the risks associated with REDHAT-BUG-710097.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203