Release date:
Updated on: 2012-12-09
Affected Systems:
Wireshark 1.x
Description:
--------------------------------------------------------------------------------
CVE (CAN) ID: CVE-2012-6054
Wireshark (formerly known as Ethereal) is a very popular open-source network traffic analysis software.
Wireshark 1.8.0-1.8.3 has a security vulnerability in the implementation of the sFlow parser. By enticing victims to read malicious packets, the sFlow parser enters an infinite loop and consumes a large amount of CPU resources, resulting in DoS attacks.
<* Source: Wireshark
Link: https://bugzilla.RedHat.com/show_bug.cgi? Id = 881816
Http://secunia.com/advisories/51422/
Http://www.wireshark.org/security/wnpa-sec-2012-32.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Wireshark
---------
Wireshark has released a Security Bulletin (wnpa-sec-2012-32) and corresponding patches for this:
Wnpa-sec-2012-32: Wireshark sFlow dissector infinite loop
Link: http://www.wireshark.org/security/wnpa-sec-2012-32.html