CVE-2012-4048
published 2012-07-24CVE-2012-4048: The PPP dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8.x before 1.8.1 allows remote attackers to cause a denial of service (invalid…
PriorityP48low3.3CVSS 2.0
AVAACLAuNCNINAP
EPSS
1.39%
69.4th percentile
The PPP dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8.x before 1.8.1 allows remote attackers to cause a denial of service (invalid pointer dereference and application crash) via a crafted packet, as demonstrated by a usbmon dump.
Affected
30 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | wireshark | < wireshark 1.8.2-1 (bookworm) | wireshark 1.8.2-1 (bookworm) |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
CVSS provenance
nvdv2.03.3LOWAV:A/AC:L/Au:N/C:N/I:N/A:P
osv3.3LOW
vendor_debian3.3LOW
vendor_redhat3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-56x6-q6ph-hm88: The PPP dissector in Wireshark 1
ghsa_unreviewed·2022-05-17
CVE-2012-4048 [LOW] CWE-94 GHSA-56x6-q6ph-hm88: The PPP dissector in Wireshark 1
The PPP dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8.x before 1.8.1 allows remote attackers to cause a denial of service (invalid pointer dereference and application crash) via a crafted packet, as demonstrated by a usbmon dump.
OSV
CVE-2012-4048: The PPP dissector in Wireshark 1
osv·2012-07-24·CVSS 3.3
CVE-2012-4048 [LOW] CVE-2012-4048: The PPP dissector in Wireshark 1
The PPP dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8.x before 1.8.1 allows remote attackers to cause a denial of service (invalid pointer dereference and application crash) via a crafted packet, as demonstrated by a usbmon dump.
Red Hat
wireshark: Out-of-bounds memory write in PPP dissector
vendor_redhat·2012-07-22·CVSS 3.3
CVE-2012-4048 [LOW] CWE-119 wireshark: Out-of-bounds memory write in PPP dissector
wireshark: Out-of-bounds memory write in PPP dissector
The PPP dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8.x before 1.8.1 allows remote attackers to cause a denial of service (invalid pointer dereference and application crash) via a crafted packet, as demonstrated by a usbmon dump.
Statement: Not Vulnerable. This issue does not affect the version of wireshark shipped with Red Hat Enterprise Linux 5 and 6.
Package: wireshark (Red Hat Enterprise Linux 5) - Not affected
Package: wireshark (Red Hat Enterprise Linux 6) - Not affected
Debian
CVE-2012-4048: wireshark - The PPP dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8....
vendor_debian·2012·CVSS 3.3
CVE-2012-4048 [LOW] CVE-2012-4048: wireshark - The PPP dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8....
The PPP dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8.x before 1.8.1 allows remote attackers to cause a denial of service (invalid pointer dereference and application crash) via a crafted packet, as demonstrated by a usbmon dump.
Scope: local
bookworm: resolved (fixed in 1.8.2-1)
bullseye: resolved (fixed in 1.8.2-1)
forky: resolved (fixed in 1.8.2-1)
sid: resolved (fixed in 1.8.2-1)
trixie: resolved (fixed in 1.8.2-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-4048 CVE-2012-4049 wireshark: Out-of-bounds memory write in PPP dissector [fedora-all]
bugzilla·2012-07-24·CVSS 3.3
CVE-2012-4048 [LOW] CVE-2012-4048 CVE-2012-4049 wireshark: Out-of-bounds memory write in PPP dissector [fedora-all]
CVE-2012-4048 CVE-2012-4049 wireshark: Out-of-bounds memory write in PPP dissector [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates
Bugzilla
CVE-2012-4048 wireshark: Out-of-bounds memory write in PPP dissector
bugzilla·2012-07-24·CVSS 3.3
CVE-2012-4048 [LOW] CVE-2012-4048 wireshark: Out-of-bounds memory write in PPP dissector
CVE-2012-4048 wireshark: Out-of-bounds memory write in PPP dissector
An out-of-bounds memory write error was found in the wireshark PPP dissector. A remote attacker could use this flaw to cause wireshark executable to crash or, potentially, execute arbitrary code with the privileges of the user running wireshark.
Reference:
http://www.wireshark.org/security/wnpa-sec-2012-11.html
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=680056
Patch:
http://code.wireshark.org/git/?p=wireshark;a=commitdiff;h=1f37a8cf14ca63e7980694fc7807cb5a7d91dc97
Discussion:
Statement:
Not Vulnerable. This issue does not affect the version of wireshark shipped with Red Hat Enterprise Linux 5 and 6.
---
Created wireshark tracking bugs for this issue
Affects: fedora-all [bug 842531]
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=680056http://lists.opensuse.org/opensuse-updates/2012-08/msg00000.htmlhttp://secunia.com/advisories/49971http://secunia.com/advisories/54425http://www.debian.org/security/2012/dsa-2590http://www.gentoo.org/security/en/glsa/glsa-201308-05.xmlhttp://www.wireshark.org/security/wnpa-sec-2012-11.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15547http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=680056http://lists.opensuse.org/opensuse-updates/2012-08/msg00000.htmlhttp://secunia.com/advisories/49971http://secunia.com/advisories/54425http://www.debian.org/security/2012/dsa-2590http://www.gentoo.org/security/en/glsa/glsa-201308-05.xmlhttp://www.wireshark.org/security/wnpa-sec-2012-11.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15547
2012-07-24
Published