Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2012-3825

Overview

Vulnerability Score 3.3 3.3
CVE Id CVE-2012-3825
Last Modified 06 Nov 2012 12:14:40
Published 30 Jun 2012 06:15:05
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector ADJACENT_NETWORK
Access Complexity LOW
Authentication NONE

CVE-2012-3825

Summary

Multiple integer overflows in Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 allow remote attackers to cause a denial of service (infinite loop) via vectors related to the (1) BACapp and (2) Bluetooth HCI dissectors, a different vulnerability than CVE-2012-2392.

Vulnerable Systems

Application

  • Wireshark 1.4.0

  • Wireshark 1.4.1

  • Wireshark 1.4.10

  • Wireshark 1.4.11

  • Wireshark 1.4.12

  • Wireshark 1.4.13

  • Wireshark 1.4.2

  • Wireshark 1.4.3

  • Wireshark 1.4.4

  • Wireshark 1.4.5

  • Wireshark 1.4.6

  • Wireshark 1.4.7

  • Wireshark 1.4.8

  • Wireshark 1.4.9

  • Wireshark 1.6.0

  • Wireshark 1.6.1

  • Wireshark 1.6.2

  • Wireshark 1.6.3

  • Wireshark 1.6.4

  • Wireshark 1.6.5

  • Wireshark 1.6.6

  • Wireshark 1.6.7


References

CONFIRM - https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=7122

CONFIRM - https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=7121

CONFIRM - http://www.wireshark.org/security/wnpa-sec-2012-08.html

SECUNIA - 49226

SECTRACK - 1027094


Last Updated: 27 May 2016 10:54:50