Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.805488
Kategorie:Denial of Service
Titel:Wireshark Denial-of-Service Vulnerability-02 Mar15 (Mac OS X)
Zusammenfassung:This host is installed with Wireshark; and is prone to denial of service vulnerability.
Beschreibung:Summary:
This host is installed with Wireshark
and is prone to denial of service vulnerability.

Vulnerability Insight:
Flaw exists due to Integer overflow in
the 'dissect_tnef' function in epan/dissectors/packet-tnef.c script in the
TNEF dissector, Off-by-one error in the 'pcapng_read' function in
wiretap/pcapng.c script in the pcapng file parser and a flaw in the WCP
dissector.

Vulnerability Impact:
Successful exploitation will allow remote
attackers to conduct denial of service attack.

Affected Software/OS:
Wireshark version 1.12.x before 1.12.4
and 1.10.x before 1.10.13 on Mac OS X

Solution:
Upgrade to version 1.12.4, 1.10.3 or
later.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Querverweis: BugTraq ID: 72942
BugTraq ID: 72944
BugTraq ID: 72941
Common Vulnerability Exposure (CVE) ID: CVE-2015-2191
http://www.securityfocus.com/bid/72941
Debian Security Information: DSA-3210 (Google Search)
http://www.debian.org/security/2015/dsa-3210
https://security.gentoo.org/glsa/201510-03
http://www.mandriva.com/security/advisories?name=MDVSA-2015:183
RedHat Security Advisories: RHSA-2015:1460
http://rhn.redhat.com/errata/RHSA-2015-1460.html
http://www.securitytracker.com/id/1031858
SuSE Security Announcement: openSUSE-SU-2015:0489 (Google Search)
http://lists.opensuse.org/opensuse-updates/2015-03/msg00038.html
Common Vulnerability Exposure (CVE) ID: CVE-2015-2189
http://www.securityfocus.com/bid/72944
Common Vulnerability Exposure (CVE) ID: CVE-2015-2188
http://www.securityfocus.com/bid/72942
CopyrightCopyright (C) 2015 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.