CVE-2009-2562Integer Overflow or Wraparound in Wireshark

Severity
5.0MEDIUMNVD
EPSS
1.9%
top 16.96%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 21
Latest updateMay 2

Description

Unspecified vulnerability in the AFS dissector in Wireshark 0.9.2 through 1.2.0 allows remote attackers to cause a denial of service (crash) via unknown vectors.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

debiandebian/wireshark< wireshark 1.2.1-1 (bookworm)
Debianwireshark/wireshark< 1.2.1-1+3
NVDwireshark/wireshark30 versions+29

Patches

🔴Vulnerability Details

2
GHSA
GHSA-8cfm-h4m4-f6q9: Unspecified vulnerability in the AFS dissector in Wireshark 02022-05-02
OSV
CVE-2009-2562: Unspecified vulnerability in the AFS dissector in Wireshark 02009-07-21

📋Vendor Advisories

2
Red Hat
Wireshark: Integer overflow in the AFS dissector2009-07-20
Debian
CVE-2009-2562: wireshark - Unspecified vulnerability in the AFS dissector in Wireshark 0.9.2 through 1.2.0 ...2009

📄Research Papers

1
arXiv
MARFCAT: Transitioning to Binary and Larger Data Sets of SATE IV2013-05-10

💬Community

1
Bugzilla
CVE-2009-2562 Wireshark: Integer overflow in the AFS dissector2009-07-21