CVE-2009-2559
published 2009-07-21CVE-2009-2559: Buffer overflow in the IPMI dissector in Wireshark 1.2.0 allows remote attackers to cause a denial of service (crash) via unspecified vectors related to an…
PriorityP417medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
2.17%
80.4th percentile
Buffer overflow in the IPMI dissector in Wireshark 1.2.0 allows remote attackers to cause a denial of service (crash) via unspecified vectors related to an array index error. NOTE: some of these details are obtained from third party information.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | wireshark | < wireshark 1.2.1-1 (bookworm) | wireshark 1.2.1-1 (bookworm) |
| wireshark | wireshark | — | — |
| wireshark | wireshark | >= 0 < 1.2.1-1 | 1.2.1-1 |
| wireshark | wireshark | >= 0 < 1.2.1-1 | 1.2.1-1 |
| wireshark | wireshark | >= 0 < 1.2.1-1 | 1.2.1-1 |
| wireshark | wireshark | >= 0 < 1.2.1-1 | 1.2.1-1 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
Wireshark-1.2.0: DoS (crash) due array index error in IPMI dissector
vendor_redhat·2009-07-20·CVSS 5.0
CVE-2009-2559 [MEDIUM] Wireshark-1.2.0: DoS (crash) due array index error in IPMI dissector
Wireshark-1.2.0: DoS (crash) due array index error in IPMI dissector
Buffer overflow in the IPMI dissector in Wireshark 1.2.0 allows remote attackers to cause a denial of service (crash) via unspecified vectors related to an array index error. NOTE: some of these details are obtained from third party information.
Statement: Not vulnerable. This issue did not affect the versions of wireshark as shipped with Red Hat Enterprise Linux 3, 4, or 5.
Debian
CVE-2009-2559: wireshark - Buffer overflow in the IPMI dissector in Wireshark 1.2.0 allows remote attackers...
vendor_debian·2009·CVSS 5.0
CVE-2009-2559 [MEDIUM] CVE-2009-2559: wireshark - Buffer overflow in the IPMI dissector in Wireshark 1.2.0 allows remote attackers...
Buffer overflow in the IPMI dissector in Wireshark 1.2.0 allows remote attackers to cause a denial of service (crash) via unspecified vectors related to an array index error. NOTE: some of these details are obtained from third party information.
Scope: local
bookworm: resolved (fixed in 1.2.1-1)
bullseye: resolved (fixed in 1.2.1-1)
forky: resolved (fixed in 1.2.1-1)
sid: resolved (fixed in 1.2.1-1)
trixie: resolved (fixed in 1.2.1-1)
GHSA
GHSA-r3m9-p95m-422h: Buffer overflow in the IPMI dissector in Wireshark 1
ghsa_unreviewed·2022-05-02
CVE-2009-2559 [MEDIUM] CWE-119 GHSA-r3m9-p95m-422h: Buffer overflow in the IPMI dissector in Wireshark 1
Buffer overflow in the IPMI dissector in Wireshark 1.2.0 allows remote attackers to cause a denial of service (crash) via unspecified vectors related to an array index error. NOTE: some of these details are obtained from third party information.
OSV
CVE-2009-2559: Buffer overflow in the IPMI dissector in Wireshark 1
osv·2009-07-21·CVSS 5.0
CVE-2009-2559 [MEDIUM] CVE-2009-2559: Buffer overflow in the IPMI dissector in Wireshark 1
Buffer overflow in the IPMI dissector in Wireshark 1.2.0 allows remote attackers to cause a denial of service (crash) via unspecified vectors related to an array index error. NOTE: some of these details are obtained from third party information.
No detection rules found.
No public exploits indexed.
http://secunia.com/advisories/35884http://www.securityfocus.com/bid/35748http://www.vupen.com/english/advisories/2009/1970http://www.wireshark.org/security/wnpa-sec-2009-04.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6379http://secunia.com/advisories/35884http://www.securityfocus.com/bid/35748http://www.vupen.com/english/advisories/2009/1970http://www.wireshark.org/security/wnpa-sec-2009-04.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6379
2009-07-21
Published