FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2010-0304

This CVE name corresponds to:

Entered Topic
2010-02-10 wireshark -- LWRES vulnerability

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2010-0304
Phase Assigned(20100112)

Description

Multiple buffer overflows in the LWRES dissector in Wireshark 0.9.15 through 1.0.10 and 1.2.0 through 1.2.5 allow remote attackers to cause a denial of service (crash) via a malformed packet, as demonstrated using a stack-based buffer overflow to the dissect_getaddrsbyname_request function.

References

Source Reference
MLIST [oss-security] 20100129 Re: CVE id request: Wireshark
MISC http://anonsvn.wireshark.org/viewvc/trunk-1.2/epan/dissectors/packet-lwres.c?view=diff&r1=31596&r2=28492&diff_format=h
MISC http://www.metasploit.com/modules/exploit/multi/misc/wireshark_lwres_getaddrbyname
CONFIRM http://www.wireshark.org/security/wnpa-sec-2010-02.html
CONFIRM http://www.wireshark.org/security/wnpa-sec-2010-01.html
DEBIAN DSA-1983
FEDORA FEDORA-2010-3556
MANDRIVA MDVSA-2010:031
BID 37985
OSVDB 61987
OVAL oval:org.mitre.oval:def:8490
OVAL oval:org.mitre.oval:def:9933
SECTRACK 1023516
SECUNIA 38257
SECUNIA 38348
SECUNIA 38829
VUPEN ADV-2010-0239
XF wireshark-lwres-bo(55951)