vendor:
Wireshark
by:
babi
7,8
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: Wireshark
Affected Version From: 1.2.5
Affected Version To: 1.2.5
Patch Exists: YES
Related CWE: N/A
CPE: //a:wireshark:wireshark:1.2.5
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Debian 5.0.3
2010
Wireshark 1.2.5 LWRES getaddrbyname stack-based buffer overflow PoC
This PoC exploits a stack-based buffer overflow vulnerability in Wireshark 1.2.5. It sends a crafted packet to the LWRES service on port 921, which contains a large amount of data that overwrites the stack and allows control over EIP on Debian 5.0.3.
Mitigation:
Upgrade to the latest version of Wireshark.