← Back

CVE-2015-0560

nvd nist
Published: Jan 10, 2015Modified: May 6, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The dissect_wccp2r1_address_table_info function in epan/dissectors/packet-wccp.c in the WCCP dissector in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 does not initialize certain data structures, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.

Affected (17)

1 product
Wireshark
1 product
Opensuse
Configuration A
15 vulnerable
Vulnerable SoftwareAffected Versions
Wireshark
Version 1.10.0
Version 1.10.10
Version 1.10.11
Version 1.10.1
Version 1.10.2
Version 1.10.3
Version 1.10.4
Version 1.10.5
Version 1.10.6
Version 1.10.7
Version 1.10.8
Version 1.10.9
Version 1.12.0
Version 1.12.1
Version 1.12.2
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Opensuse
Version 13.1
Version 13.2

Related CWEs

Timeline

No history available yet.