Integer Overflow Vulnerability in Wireshark XTP Dissector
CVE-2012-4288

Currently unrated

Key Information:

Vendor
Oracle
Vendor
CVE Published:
16 August 2012

Summary

An integer overflow vulnerability exists in the dissect_xtp_ecntl function of the XTP dissector in Wireshark. This flaw allows remote attackers to exploit it by sending a maliciously crafted value for span length, potentially leading to a denial of service through application crashes or infinite loops in affected versions of Wireshark.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.