Release date:
Updated on: 2012-12-01
Affected Systems:
Wireshark 1.x
Description:
--------------------------------------------------------------------------------
CVE (CAN) ID: CVE-2012-5599
Wireshark (formerly known as Ethereal) is a very popular open-source network traffic analysis software.
Wireshark 1.6.0-1.6.11 and 1.8.0-1.8.3 have a security vulnerability in the implementation of the WTP parser. By enticing victims to read malicious packets, a large amount of CPU resources are consumed, and the WTP parser enters an infinite loop.
<* Source: Wireshark (http://www.wireshark.org /)
Link: https://bugzilla.redhat.com/show_bug.cgi? Id = 881748
Http://secunia.com/advisories/51422/
Http://www.wireshark.org/security/wnpa-sec-2012-37.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Wireshark
---------
Wireshark has released a Security Bulletin (wnpa-sec-2012-37) and corresponding patches for this:
Wnpa-sec-2012-37: Name: Wireshark WTP dissector infinite loop
Link: http://www.wireshark.org/security/wnpa-sec-2012-37.html