REDHAT-BUG-710097: Double Free
A double free flaw was found in the way Wireshark uncompressed a zlib compressed packet inside a message of tvbuff buffer. A remote attacker could create a specially-crafted capture file, which once opened, by a local, unsuspecting user could lead to wireshark application crash.
References: [1] https://bugs.wireshark.org/bugzilla/showbug.cgi?id=5908 (upstream bug report, not public) [2] http://www.openwall.com/lists/oss-security/2011/05/31/20 (CVE request) [3] http://www.wireshark.org/security/wnpa-sec-2011-07.html (upstream advisory)
Upstream patch: [4] http://anonsvn.wireshark.org/viewvc?view=revision&revision=37081
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-710097?
REDHAT-BUG-710097 is classified as a critical vulnerability due to its potential to cause application crashes.
How do I fix REDHAT-BUG-710097?
To fix REDHAT-BUG-710097, update your Wireshark to the latest version where the vulnerability is patched.
Who is affected by REDHAT-BUG-710097?
Users of Wireshark that open specially-crafted capture files are at risk of the REDHAT-BUG-710097 vulnerability.
What kind of attack does REDHAT-BUG-710097 enable?
REDHAT-BUG-710097 enables remote attackers to crash Wireshark by triggering a double free flaw.
What should I do if I cannot update my Wireshark to address REDHAT-BUG-710097?
If you cannot update, avoid opening untrusted or unknown capture files to mitigate the risks associated with REDHAT-BUG-710097.