CVE-2011-1590Heap-based Buffer Overflow in Wireshark

Severity
4.3MEDIUMNVD
EPSS
2.5%
top 14.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 29
Latest updateMay 17

Description

The X.509if dissector in Wireshark 1.2.x before 1.2.16 and 1.4.x before 1.4.5 does not properly initialize certain global variables, which allows remote attackers to cause a denial of service (application crash) via a crafted .pcap file.

CVSS vector

AV:N/AC:M/C:N/I:N/A:PExploitability: 8.6 | Impact: 2.9

Affected Packages3 packages

debiandebian/wireshark< wireshark 1.4.5-1 (bookworm)
Debianwireshark/wireshark< 1.4.5-1+3
NVDwireshark/wireshark21 versions+20

Patches

🔴Vulnerability Details

2
GHSA
GHSA-w9cx-3763-q7p4: The X2022-05-17
OSV
CVE-2011-1590: The X2011-04-29

📋Vendor Advisories

2
Red Hat
Wireshark: Use-after-free causes heap-based buffer overflow in X.509if dissector2011-04-15
Debian
CVE-2011-1590: wireshark - The X.509if dissector in Wireshark 1.2.x before 1.2.16 and 1.4.x before 1.4.5 do...2011

💬Community

2
Bugzilla
CVE-2011-1590 Wireshark: Use-after-free causes heap-based buffer overflow in X.509if dissector2011-04-19
Bugzilla
CVE-2011-1590 CVE-2011-1591 wireshark various flaws [fedora-all]2011-04-19