CVE Database
/

CVE-2014-2281

Back to search

CVE-2014-2281

Published: Mar 11, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

The nfs_name_snoop_add_name function in epan/dissectors/packet-nfs.c in the NFS dissector in Wireshark 1.8.x before 1.8.13 and 1.10.x before 1.10.6 does not validate a certain length value, which allows remote attackers to cause a denial of service (memory corruption and application crash) via a crafted NFS packet.

VendorProductVersions

n/a

n/a

affected
n/a

References

57489
third-party-advisory
x_refsource_SECUNIA
RHSA-2014:0341
vendor-advisory
x_refsource_REDHAT
57480
third-party-advisory
x_refsource_SECUNIA
openSUSE-SU-2014:0382
vendor-advisory
x_refsource_SUSE
1029907
vdb-entry
x_refsource_SECTRACK
openSUSE-SU-2014:0383
vendor-advisory
x_refsource_SUSE
DSA-2871
vendor-advisory
x_refsource_DEBIAN
RHSA-2014:0342
vendor-advisory
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now