CVE-2015-3815Improper Restriction of Operations within the Bounds of a Memory Buffer in Wireshark

Severity
5.0MEDIUMNVD
EPSS
0.6%
top 30.50%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 26
Latest updateMay 17

Description

The detect_version function in wiretap/logcat.c in the Android Logcat file parser in Wireshark 1.12.x before 1.12.5 does not check the length of the payload, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a packet with a crafted payload, as demonstrated by a length of zero, a different vulnerability than CVE-2015-3906.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

debiandebian/wireshark< wireshark 1.12.5+g5819e5b-1 (bookworm)
Debianwireshark/wireshark< 1.12.5+g5819e5b-1+3
NVDwireshark/wireshark5 versions+4

🔴Vulnerability Details

4
GHSA
GHSA-mf3q-r5cj-w985: The detect_version function in wiretap/logcat2022-05-17
GHSA
GHSA-fx4j-jxfj-qvjh: The logcat_dump_text function in wiretap/logcat2022-05-17
OSV
CVE-2015-3906: The logcat_dump_text function in wiretap/logcat2015-05-26
OSV
CVE-2015-3815: The detect_version function in wiretap/logcat2015-05-26

📋Vendor Advisories

3
Red Hat
wireshark: Android Logcat file parser crash (wnpa-sec-2015-18)2015-05-12
Debian
CVE-2015-3906: wireshark - The logcat_dump_text function in wiretap/logcat.c in the Android Logcat file par...2015
Debian
CVE-2015-3815: wireshark - The detect_version function in wiretap/logcat.c in the Android Logcat file parse...2015

💬Community

1
Bugzilla
CVE-2015-3815 wireshark: Android Logcat file parser crash (wnpa-sec-2015-18)2015-05-18