CVE-2015-2188
08.03.2015, 02:59
epan/dissectors/packet-wcp.c in the WCP dissector in Wireshark 1.10.x before 1.10.13 and 1.12.x before 1.12.4 does not properly initialize a data structure, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted packet that is improperly handled during decompression.Enginsight
| Vendor | Product | Version | 
|---|---|---|
| wireshark | wireshark | 1.10.0  | 
| wireshark | wireshark | 1.10.1  | 
| wireshark | wireshark | 1.10.2  | 
| wireshark | wireshark | 1.10.3  | 
| wireshark | wireshark | 1.10.4  | 
| wireshark | wireshark | 1.10.5  | 
| wireshark | wireshark | 1.10.6  | 
| wireshark | wireshark | 1.10.7  | 
| wireshark | wireshark | 1.10.8  | 
| wireshark | wireshark | 1.10.9  | 
| wireshark | wireshark | 1.10.10  | 
| wireshark | wireshark | 1.10.11  | 
| wireshark | wireshark | 1.10.12  | 
| wireshark | wireshark | 1.12.0  | 
| wireshark | wireshark | 1.12.1  | 
| wireshark | wireshark | 1.12.2  | 
| wireshark | wireshark | 1.12.3  | 
| mageia | mageia | 4.0  | 
| opensuse | opensuse | 13.1  | 
| opensuse | opensuse | 13.2  | 
| debian | debian_linux | 7.0  | 
| debian | debian_linux | 8.0  | 
| oracle | solaris | 11.2  | 
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product  | |||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| wireshark | 
  | 
Common Weakness Enumeration
References