CVE-2007-6116Infinite Loop in Wireshark

12 documents6 sources
Severity
6.1MEDIUMNVD
NVD5.0OSV5.0
EPSS
2.5%
top 14.63%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 23
Latest updateMay 1

Description

The Firebird/Interbase dissector in Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial of service (infinite loop or crash) via unknown vectors.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

debiandebian/wireshark< wireshark 0.99.7-1 (bookworm)+1
Debianwireshark/wireshark< 0.99.7~pre1-1+7

Patches

🔴Vulnerability Details

4
GHSA
GHSA-c976-3hhm-7m57: The Firebird/Interbase dissector in Wireshark (formerly Ethereal) 02022-05-01
GHSA
GHSA-wv5g-77wr-363r: Wireshark (formerly Ethereal) 02022-05-01
OSV
CVE-2007-6439: Wireshark (formerly Ethereal) 02007-12-19
OSV
CVE-2007-6116: The Firebird/Interbase dissector in Wireshark (formerly Ethereal) 02007-11-23

📋Vendor Advisories

4
Red Hat
wireshark IPv6 and USB dissector crash2007-12-18
Red Hat
wireshark firebird/interbase flaws2007-11-22
Debian
CVE-2007-6439: wireshark - Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial o...2007
Debian
CVE-2007-6116: wireshark - The Firebird/Interbase dissector in Wireshark (formerly Ethereal) 0.99.6 allows ...2007

💬Community

2
Bugzilla
CVE-2007-6439 wireshark IPv6 and USB dissector crash2008-01-02
Bugzilla
CVE-2007-6116 wireshark firebird/interbase flaws2007-11-23