CVE-2015-0563
Published Jan 10, 2015
Last updated a year ago
Overview
- Description
- epan/dissectors/packet-smtp.c in the SMTP dissector in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 uses an incorrect length value for certain string-append operations, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:P
Weaknesses
- nvd@nist.gov
- CWE-20
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A10BC294-9196-425F-9FB0-B1625465B47F" }, { "criteria": "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "03117DF1-3BEC-4B8D-AD63-DBBDB2126081" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:wireshark:wireshark:1.10.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "481435A6-4790-4B3E-8EEA-0394A6AB481A" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.10.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2B0BB28A-9E61-4073-9BE2-C34AB2BCF1EB" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.10.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0753BF56-C829-48C3-AA6E-C0A2A1EA1124" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.10.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EC206A02-8259-4FA0-8B6F-D8C58AB946C9" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.10.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B973D7E1-523B-4AB9-965F-F8BBD2420CFA" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.10.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "633AE75A-89BB-458D-9609-2C238DAC25C6" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.10.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "20A8D578-A2DD-4D08-81C1-E4437F40D21D" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.10.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C0BBB2FB-A3D3-4D9F-88CB-F3D74395D364" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.10.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A67E51FE-2B4A-4475-B829-316EDC24B88B" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.10.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3060B2B7-48CB-4669-BF65-4750D11CA401" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.10.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2CA274E6-5CF8-46A1-A38C-2D9E26A8CDE3" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.10.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "55D76E3D-0CF1-4FAB-A243-793969CA83AC" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.12.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "29AC5E99-9C21-4C2E-AE68-A4B887318577" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.12.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B90C8934-01D8-4027-8A38-0B3230CC5077" }, { "criteria": "cpe:2.3:a:wireshark:wireshark:1.12.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "49C89A62-69E2-40C5-9C75-FA6601A935A2" } ], "operator": "OR" } ] } ]