Wireshark Bluetooth ACL, Q.931, and USB Dissector Bugs Let Remote Users Deny Service
|
|
SecurityTracker Alert ID: 1021069
|
|
SecurityTracker URL: http://securitytracker.com/id?1021069
|
|
CVE Reference: CVE-2008-4680
, CVE-2008-4681
, CVE-2008-4682
, CVE-2008-4683
, CVE-2008-4684
, CVE-2008-4685
(Links to External Site)
|
Updated: Oct 27 2008
|
Original Entry Date: Oct 21 2008
|
Impact: Denial of service via network
|
Fix Available: Yes
Vendor Confirmed: Yes
|
Version(s): prior to 1.0.4
|
Description: A vulnerability was reported in Wireshark. A remote user can cause denial of service conditions.
A remote user can send specially crafted Bluetooth ACL data to cause the target service to crash or abort. Versions 0.99.2 to 1.0.3
are affected. Florent Drouin and David Maciejak reported this vulnerability.
A remote user can send specially crafted Q.931
data to cause the target service to crash or abort. Versions 0.10.3 to 1.0.3 are affected.
A user can create specially crafted
Tamos CommView capture files that, when read, will cause Wireshark to abort. Versions 0.99.7 to 1.0.3 are affected.
A remote
user can cause the USB dissector or Bluetooth RFCOMM to crash or abort. Versions 0.99.7 to 1.0.3 are affected. David Maciejak
reported the USB dissector vulnerability.
|
Impact: A remote user can cause the target service to crash or abort.
|
Solution: The vendor has issued a fixed version (1.0.4).
The vendor's advisory is available at:
http://www.wireshark.org/security/wnpa-sec-2008-06.html
|
Vendor URL: www.wireshark.org/security/wnpa-sec-2008-06.html (Links to External Site)
|
Cause: Not specified
|
Underlying OS: Linux (Any), UNIX (Any), Windows (Any)
|
|
Message History:
This archive entry has one or more follow-up message(s) listed below.
|
Source Message Contents
|
Date: Tue, 21 Oct 2008 08:51:46 -0400
Subject: Wireshark
|
http://www.wireshark.org/security/wnpa-sec-2008-06.html
Wireshark 1.0.4 fixes the following vulnerabilities:
* Florent Drouin and David Maciejak found that the Bluetooth ACL dissector could crash or abort. (Bug 1513)
Versions affected: 0.99.2 to 1.0.3
* The Q.931 dissector could crash or abort. (Bug 2870)
Versions affected: 0.10.3 to 1.0.3
* Wireshark could abort while reading Tamos CommView capture files. (Bug 2926)
Versions affected: 0.99.7 to 1.0.3
* David Maciejak found that the USB dissector could crash or abort. This led to the disovery of a similar problem in the Bluetooth RFCOMM dissector. (Bug 2922)
Versions affected: 0.99.7 to 1.0.3
|
|