Release date:
Updated on:
Affected Systems:
Wireshark 1.8.x
Wireshark 1.6.x
Description:
--------------------------------------------------------------------------------
CVE (CAN) ID: CVE-2013-1587
Wireshark is the most popular network protocol parser.
The dissect_rohc_ir_packet function in the ROHC parser of Wireshark 1.8.x epan/dissectors/packet-rohc.c does not properly process unknown configuration files, allowing remote attackers to cause application crashes and DOS through malformed packets.
<* Source: Laurent Butti
Link: http://web.nvd.nist.gov/view/vuln/detail? VulnId = CVE-2013-1587
Http://www.wireshark.org/security/wnpa-sec-2013-06.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Wireshark
---------
Wireshark has released a Security Bulletin (wnpa-sec-2013-06) and corresponding patches for this:
Wnpa-sec-2013-06: ROHC dissector crash
Link: http://www.wireshark.org/security/wnpa-sec-2013-06.html