CVE-2009-4377
published 2009-12-21CVE-2009-4377: The (1) SMB and (2) SMB2 dissectors in Wireshark 0.9.0 through 1.2.4 allow remote attackers to cause a denial of service (crash) via a crafted packet that…
PriorityP417medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
2.66%
84.2th percentile
The (1) SMB and (2) SMB2 dissectors in Wireshark 0.9.0 through 1.2.4 allow remote attackers to cause a denial of service (crash) via a crafted packet that triggers a NULL pointer dereference, as demonstrated by fuzz-2009-12-07-11141.pcap.
Affected
41 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | wireshark | < wireshark 1.2.5-1 (bookworm) | wireshark 1.2.5-1 (bookworm) |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv4.3MEDIUM
vendor_debian4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
wireshark: invalid pointer dereference in SMB/SMB2 dissectors
vendor_redhat·2009-12-17·CVSS 4.3
CVE-2009-4377 [MEDIUM] wireshark: invalid pointer dereference in SMB/SMB2 dissectors
wireshark: invalid pointer dereference in SMB/SMB2 dissectors
The (1) SMB and (2) SMB2 dissectors in Wireshark 0.9.0 through 1.2.4 allow remote attackers to cause a denial of service (crash) via a crafted packet that triggers a NULL pointer dereference, as demonstrated by fuzz-2009-12-07-11141.pcap.
Debian
CVE-2009-4377: wireshark - The (1) SMB and (2) SMB2 dissectors in Wireshark 0.9.0 through 1.2.4 allow remot...
vendor_debian·2009·CVSS 4.3
CVE-2009-4377 [MEDIUM] CVE-2009-4377: wireshark - The (1) SMB and (2) SMB2 dissectors in Wireshark 0.9.0 through 1.2.4 allow remot...
The (1) SMB and (2) SMB2 dissectors in Wireshark 0.9.0 through 1.2.4 allow remote attackers to cause a denial of service (crash) via a crafted packet that triggers a NULL pointer dereference, as demonstrated by fuzz-2009-12-07-11141.pcap.
Scope: local
bookworm: resolved (fixed in 1.2.5-1)
bullseye: resolved (fixed in 1.2.5-1)
forky: resolved (fixed in 1.2.5-1)
sid: resolved (fixed in 1.2.5-1)
trixie: resolved (fixed in 1.2.5-1)
GHSA
GHSA-wqc7-2v82-hg6w: The (1) SMB and (2) SMB2 dissectors in Wireshark 0
ghsa_unreviewed·2022-05-02
CVE-2009-4377 [MEDIUM] GHSA-wqc7-2v82-hg6w: The (1) SMB and (2) SMB2 dissectors in Wireshark 0
The (1) SMB and (2) SMB2 dissectors in Wireshark 0.9.0 through 1.2.4 allow remote attackers to cause a denial of service (crash) via a crafted packet that triggers a NULL pointer dereference, as demonstrated by fuzz-2009-12-07-11141.pcap.
OSV
CVE-2009-4377: The (1) SMB and (2) SMB2 dissectors in Wireshark 0
osv·2009-12-21·CVSS 4.3
CVE-2009-4377 [MEDIUM] CVE-2009-4377: The (1) SMB and (2) SMB2 dissectors in Wireshark 0
The (1) SMB and (2) SMB2 dissectors in Wireshark 0.9.0 through 1.2.4 allow remote attackers to cause a denial of service (crash) via a crafted packet that triggers a NULL pointer dereference, as demonstrated by fuzz-2009-12-07-11141.pcap.
No detection rules found.
No public exploits indexed.
http://osvdb.org/61178http://secunia.com/advisories/37842http://secunia.com/advisories/37916http://www.debian.org/security/2009/dsa-1983http://www.mandriva.com/security/advisories?name=MDVSA-2010:031http://www.securityfocus.com/bid/37407http://www.securitytracker.com/id?1023374http://www.vupen.com/english/advisories/2009/3596http://www.wireshark.org/security/wnpa-sec-2009-09.htmlhttps://bugs.wireshark.org/bugzilla/show_bug.cgi?id=4301https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9564https://www.redhat.com/archives/fedora-package-announce/2009-December/msg01248.htmlhttp://osvdb.org/61178http://secunia.com/advisories/37842http://secunia.com/advisories/37916http://www.debian.org/security/2009/dsa-1983http://www.mandriva.com/security/advisories?name=MDVSA-2010:031http://www.securityfocus.com/bid/37407http://www.securitytracker.com/id?1023374http://www.vupen.com/english/advisories/2009/3596http://www.wireshark.org/security/wnpa-sec-2009-09.htmlhttps://bugs.wireshark.org/bugzilla/show_bug.cgi?id=4301https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9564https://www.redhat.com/archives/fedora-package-announce/2009-December/msg01248.html
2009-12-21
Published