Wireshark - ZigBee ZCL Dissector Infinite Loop Denial of Service

EDB-ID:

15973




Platform:

Multiple

Date:

2011-01-11


Source:  https://www.securityfocus.com/bid/44986/info

Wireshark is prone to a remote denial-of-service vulnerability because it fails to properly handle certain types of packets.

Attackers can exploit this issue to cause the application to enter an infinite loop which may cause denial-of-service conditions.

Wireshark 1.4.0 to 1.4.1 are vulnerable. 

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/15973.pcap (44986.pcap)