Release date:
Updated on:
Affected Systems:
Wireshark 1.8.x
Wireshark 1.6.x
Description:
--------------------------------------------------------------------------------
CVE (CAN) ID: CVE-2013-1590
Wireshark is the most popular network protocol parser.
The NTLMSSP parser of Wireshark 1.6.x and 1.8.x has a buffer overflow vulnerability, which allows remote attackers to cause application crashes and DOS through malformed packets.
<* Source: Ulf H & #228; rnhammar
Link: http://www.wireshark.org/security/wnpa-sec-2013-09.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Wireshark
---------
Wireshark has released a Security Bulletin (wnpa-sec-2013-09) and the corresponding patch for this, please go to the vendor's home page to download 1.8.5, 1.6.13 and later:
Wnpa-sec-2013-09: Name: NTLMSSP dissector overflow
Link: http://www.wireshark.org/security/wnpa-sec-2013-09.html