CVE-2014-5165Improper Restriction of Operations within the Bounds of a Memory Buffer in Wireshark

Severity
5.0MEDIUMNVD
OSV4.9
EPSS
0.3%
top 42.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 1
Latest updateMay 17

Description

The dissect_ber_constrained_bitstring function in epan/dissectors/packet-ber.c in the ASN.1 BER dissector in Wireshark 1.10.x before 1.10.9 does not properly validate padding values, which allows remote attackers to cause a denial of service (buffer underflow and application crash) via a crafted packet.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages4 packages

debiandebian/wireshark< wireshark 1.12.0+git+4fab41a1-1 (bookworm)
Debianwireshark/wireshark< 1.12.0+git+4fab41a1-1+3
NVDwireshark/wireshark9 versions+8
Ubuntuqemu/qemu< 2.0.0+dfsg-2ubuntu1.17

🔴Vulnerability Details

3
GHSA
GHSA-c63j-44g4-8p4x: The dissect_ber_constrained_bitstring function in epan/dissectors/packet-ber2022-05-17
OSV
qemu, qemu-kvm vulnerabilities2015-08-27
OSV
CVE-2014-5165: The dissect_ber_constrained_bitstring function in epan/dissectors/packet-ber2014-08-01

📋Vendor Advisories

2
Red Hat
wireshark: ASN.1 BER dissector crash (wnpa-sec-2014-11)2014-06-17
Debian
CVE-2014-5165: wireshark - The dissect_ber_constrained_bitstring function in epan/dissectors/packet-ber.c i...2014

💬Community

2
Bugzilla
CVE-2014-5164 CVE-2014-5165 CVE-2014-5161 CVE-2014-5162 CVE-2014-5163 wireshark: various flaws [fedora-all]2014-08-01
Bugzilla
CVE-2014-5165 wireshark: ASN.1 BER dissector crash (wnpa-sec-2014-11)2014-08-01