CVE-2008-3145Improper Input Validation in Wireshark

Severity
5.0MEDIUMNVD
EPSS
2.4%
top 14.85%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 16
Latest updateMay 1

Description

The fragment_add_work function in epan/reassemble.c in Wireshark 0.8.19 through 1.0.1 allows remote attackers to cause a denial of service (crash) via a series of fragmented packets with non-sequential fragmentation offset values, which lead to a buffer over-read.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

debiandebian/wireshark< wireshark 1.0.2-1 (bookworm)
Debianwireshark/wireshark< 1.0.2-1+3
NVDwireshark/wireshark14 versions+13

Patches

🔴Vulnerability Details

2
GHSA
GHSA-fwqh-jqxf-956w: The fragment_add_work function in epan/reassemble2022-05-01
OSV
CVE-2008-3145: The fragment_add_work function in epan/reassemble2008-07-16

📋Vendor Advisories

2
Red Hat
wireshark: crash in the packet reassembling2008-07-10
Debian
CVE-2008-3145: wireshark - The fragment_add_work function in epan/reassemble.c in Wireshark 0.8.19 through ...2008

💬Community

1
Bugzilla
CVE-2008-3145 wireshark: crash in the packet reassembling2008-07-11