CVE Database
/

CVE-2013-2487

Back to search

CVE-2013-2487

Published: Mar 7, 2013

Modified: Aug 6, 2024

PUBLISHED

Description

epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark 1.8.x before 1.8.6 uses incorrect integer data types, which allows remote attackers to cause a denial of service (infinite loop) via crafted integer values in a packet, related to the (1) dissect_icecandidates, (2) dissect_kinddata, (3) dissect_nodeid_list, (4) dissect_storeans, (5) dissect_storereq, (6) dissect_storeddataspecifier, (7) dissect_fetchreq, (8) dissect_findans, (9) dissect_diagnosticinfo, (10) dissect_diagnosticresponse, (11) dissect_reload_messagecontents, and (12) dissect_reload_message functions, a different vulnerability than CVE-2013-2486.

VendorProductVersions

n/a

n/a

affected
n/a

References

openSUSE-SU-2013:0494
vendor-advisory
x_refsource_SUSE
53425
third-party-advisory
x_refsource_SECUNIA
openSUSE-SU-2013:0911
vendor-advisory
x_refsource_SUSE
52471
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:16593
vdb-entry
signature
x_refsource_OVAL
openSUSE-SU-2013:0506
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2013:0947
vendor-advisory
x_refsource_SUSE

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now