Integer Overflow Vulnerability in Wireshark XTP Dissector
CVE-2012-4288
Currently unrated
Summary
An integer overflow vulnerability exists in the dissect_xtp_ecntl function of the XTP dissector in Wireshark. This flaw allows remote attackers to exploit it by sending a maliciously crafted value for span length, potentially leading to a denial of service through application crashes or infinite loops in affected versions of Wireshark.
References
Timeline
Vulnerability published
Vulnerability Reserved