CVE-2013-4081
Published Jun 9, 2013
Last updated 6 years ago
Overview
- Description
- The http_payload_subdissector function in epan/dissectors/packet-http.c in the HTTP dissector in Wireshark 1.6.x before 1.6.16 and 1.8.x before 1.8.8 does not properly determine when to use a recursive approach, which allows remote attackers to cause a denial of service (stack consumption) via a crafted packet.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:P
Weaknesses
- nvd@nist.gov
- CWE-119
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:wireshark:wireshark:1.8.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "606DF728-1DA6-4989-B40A-44471CC677DB" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.8.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F824AE6B-B087-4C69-8F73-7B146920FC3C" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.8.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6702EAA1-7FBD-4755-B7C2-C2B3A1AFF142" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.8.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AF6D1967-500E-4E96-A6D2-CE17EA839572" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.8.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E8400AD4-ECE9-4810-B559-D4EB03AECC50" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.8.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "424B66E9-56F8-4D87-94C6-80F5EA0BD1B2" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.8.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6BD261DB-1794-473F-BAD9-E5B7771288BD" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.8.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E1007895-7CC2-4C2D-BACB-BAE6DECDB840" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "16F59A04-14CF-49E2-9973-645477EA09DA" }, { "criteria": "cpe:2.3:o:opensuse:opensuse:11.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DE554781-1EB9-446E-911F-6C11970C47F4" }, { "criteria": "cpe:2.3:o:opensuse:opensuse:12.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D806A17E-B8F9-466D-807D-3F1E77603DC8" }, { "criteria": "cpe:2.3:o:opensuse:opensuse:12.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DFBF430B-0832-44B0-AA0E-BA9E467F7668" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0738C9A6-0370-447D-91E6-EB59ECC92224" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "05A83A69-D49D-48D0-8FFE-4887F15ACD33" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B9CA0830-9AFE-499F-903F-D9C3B5CCC982" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "178B042E-A628-4C40-BEDB-80200252D301" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D72AEB47-B059-4DF4-9414-E8EE0024997B" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "12CBB602-DE4E-4096-BB3C-ED2A68833050" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "25C336D3-F7C5-40E0-B740-831D2120E1DC" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "76207D59-2426-48E6-A5AA-24CB481AF05F" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AA72071F-5DA0-4ABD-8453-C5FB4337DC56" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D8B892DD-E2F0-422D-8552-8DB836D2E920" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "172D21A1-3F9C-4170-B600-DE5694BDE196" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FEA9B5A6-B561-4D82-B9C1-FF3BAD883F6D" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D70C6B8F-81E2-4B0B-9412-C234581BA68E" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "148C8A17-B89C-465C-B5A1-37D7081F41E9" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "07BC8A5E-11CE-4D7C-B8AD-68FA76B2E354" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.6.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E5BAEE73-B40D-4C3F-83BE-EEE36D83A6B7" } ], "operator": "OR" } ] } ]