Release date:
Updated on: 2012-12-01
Affected Systems:
Wireshark 1.x
Description:
--------------------------------------------------------------------------------
CVE (CAN) ID: CVE-2012-5597
Wireshark (formerly known as Ethereal) is a very popular open-source network traffic analysis software.
Wireshark 1.6.0-1.6.11 and 1.8.0-1.8.3 have security vulnerabilities in the implementation of the ISAKMP parser. By enticing victims to open malicious files, the application consumes a lot of CPU resources and enters an infinite loop, eventually collapsed.
<* Source: Wireshark (http://www.wireshark.org /)
Link: https://bugzilla.RedHat.com/show_bug.cgi? Id = 881790
Http://secunia.com/advisories/51422/
Http://www.wireshark.org/security/wnpa-sec-2012-35.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Wireshark
---------
Wireshark has released a Security Bulletin (wnpa-sec-2012-35) and corresponding patches for this:
Wnpa-sec-2012-35: Name: Wireshark ISAKMP dissector crash
Link: http://www.wireshark.org/security/wnpa-sec-2012-35.html