CVE漏洞中文网

0DayBank一个专门收集整理全球互联网漏洞的公开发布网站
  1. 首页
  2. CVE
  3. 正文

CVE-2017-15189 Wireshark Multiple Vulnerabilities (wnpa-sec-2017-42 to wnpa-sec-2017-46)

2017年11月20日 1342点热度 0人点赞 0条评论

漏洞类别:Local

漏洞等级:

漏洞信息

Wireshark is a network protocol analyzer available for multiple operating systems. It lets you capture and interactively browse the traffic running on a computer network.

This Wireshark update fixes the following vulnerabilities:
The DOCSIS dissector could go into an infinite loop.[CVE-2017-15189].
The RTSP dissector could crash.[CVE-2017-15190].
The DMP dissector could crash. Discovered by the OSS-Fuzz project.[CVE-2017-15191].
The Bluetooth Attribute Protocol dissector could crash. Discovered by the OSS-Fuzz project.[CVE-2017-15192].
The MBIM dissector could crash or exhaust system memory.[CVE-2017-15193].
Affected Versions
Wireshark 2.4.0 to 2.4.1, 2.2.0 to 2.2.9, 2.0.0 to 2.0.15

QID Detection Logic(Authenticated)
It checks for vulnerable version of Wireshark.

漏洞危害

The vendor has issued a fix (2.4.2,2.2.10,2.0.16).
The latest version is available for download from Wireshark.

解决方案

N/A

Patch:
Following are links for downloading patches to fix the vulnerabilities:

wnpa-sec-2017-42 to wnpa-sec-2017-46: Windows

0daybank

标签: 暂无
最后更新:2017年12月8日

小助手

这个人很懒,什么都没留下

点赞
< 上一篇
下一篇 >

文章评论

您需要 登录 之后才可以评论

COPYRIGHT © 2024 www.pdr.cn CVE漏洞中文网. ALL RIGHTS RESERVED.

鲁ICP备2022031030号

联系邮箱:wpbgssyubnmsxxxkkk@proton.me