← Back

CVE-2016-4006

nvd nist
Published: Apr 25, 2016Modified: May 6, 2026

JSON object

Loading...
5.9
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.2 / Impact: 3.6
Source: NVD

Description

epan/proto.c in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not limit the protocol-tree depth, which allows remote attackers to cause a denial of service (stack memory consumption and application crash) via a crafted packet.

Affected (14)

Products: Wireshark: Wireshark
1 product
Wireshark
Configuration A
14 vulnerable
Vulnerable SoftwareAffected Versions
Wireshark
Version 1.12.0
Version 1.12.10
Version 1.12.1
Version 1.12.2
Version 1.12.3
Version 1.12.4
Version 1.12.5
Version 1.12.6
Version 1.12.7
Version 1.12.8
Version 1.12.9
Version 2.0.0
Version 2.0.1
Version 2.0.2

Timeline

No history available yet.