vendor:
Wireshark
by:
sickness
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Wireshark
Affected Version From: 1.4.2001
Affected Version To: 1.4.2004
Patch Exists: YES
Related CWE: N/A
CPE: a:wireshark:wireshark
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP2 and SP3
2011
Exploit for Wireshark 1.4.1-1.4.4
This exploit is for Wireshark 1.4.1-1.4.4. It is a buffer overflow exploit which uses a payload of calc.exe and a non-ASLR enabled wireshark module. It has been tested on Windows XP SP2 and SP3 but should work on every Windows with DEP off. It has been fixed in the latest version 1.4.5.
Mitigation:
Upgrade to the latest version of Wireshark 1.4.5