REDHAT-BUG-737785: Low severity wireshark vulnerability
A buffer exception handling vulnerability was found in wireshark. It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. This affects versions 1.6.0 to 1.6.1 and has been fixed in version 1.6.2
Reference: http://www.wireshark.org/security/wnpa-sec-2011-14.html
This issue affects the versions of wireshark shipped with Fedora-14, Fedora-15 and the upcoming Fedora-16 and has been fixed via the following security advisories:
https://admin.fedoraproject.org/updates/FEDORA-2011-12423 https://admin.fedoraproject.org/updates/FEDORA-2011-12403 https://admin.fedoraproject.org/updates/FEDORA-2011-12399
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-737785?
The severity of REDHAT-BUG-737785 is considered moderate due to its potential to cause application crashes.
How do I fix REDHAT-BUG-737785?
To fix REDHAT-BUG-737785, upgrade Wireshark to version 1.6.2 or later.
What versions are affected by REDHAT-BUG-737785?
Wireshark versions 1.6.0 to 1.6.1 are affected by REDHAT-BUG-737785.
What type of vulnerability is REDHAT-BUG-737785?
REDHAT-BUG-737785 is a buffer exception handling vulnerability.
How can REDHAT-BUG-737785 be exploited?
REDHAT-BUG-737785 can be exploited by injecting a malformed packet or reading a malformed packet trace file, potentially causing Wireshark to crash.