Vulnerabilities > CVE-2015-3814 - Numeric Errors vulnerability in multiple products

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN

Summary

The (1) dissect_tfs_request and (2) dissect_tfs_response functions in epan/dissectors/packet-ieee80211.c in the IEEE 802.11 dissector in Wireshark 1.10.x before 1.10.14 and 1.12.x before 1.12.5 interpret a zero value as a length rather than an error condition, which allows remote attackers to cause a denial of service (infinite loop) via a crafted packet.

Common Weakness Enumeration (CWE)

Nessus

  • NASL familyGentoo Local Security Checks
    NASL idGENTOO_GLSA-201510-03.NASL
    descriptionThe remote host is affected by the vulnerability described in GLSA-201510-03 (Wireshark: Multiple vulnerabilities) Multiple vulnerabilities have been discovered in Wireshark. Please review the CVE identifiers referenced below for details. Impact : A remote attacker could possibly cause a Denial of Service condition. Workaround : There is no known workaround at this time.
    last seen2020-06-01
    modified2020-06-02
    plugin id86688
    published2015-11-02
    reporterThis script is Copyright (C) 2015-2016 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/86688
    titleGLSA-201510-03 : Wireshark: Multiple vulnerabilities
  • NASL familyDebian Local Security Checks
    NASL idDEBIAN_DSA-3277.NASL
    descriptionMultiple vulnerabilities were discovered in the dissectors/parsers for LBMR, web sockets, WCP, X11, IEEE 802.11 and Android Logcat, which could result in denial of service.
    last seen2020-06-01
    modified2020-06-02
    plugin id83960
    published2015-06-03
    reporterThis script is Copyright (C) 2015-2018 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/83960
    titleDebian DSA-3277-1 : wireshark - security update
  • NASL familyWindows
    NASL idWIRESHARK_1_12_5.NASL
    descriptionThe version of Wireshark installed on the remote Windows host is 1.10.x prior to 1.10.14, or 1.12.x prior to 1.12.5. It is, therefore, affected by various denial of service vulnerabilities in the following items : - LBMR dissector (CVE-2015-3808, CVE-2015-3809) - WebSocket dissector (CVE-2015-3810) - WCP dissector (CVE-2015-3811) - X11 dissector (CVE-2015-3812) - Packet reassembly code (CVE-2015-3813) - IEEE 802.11 dissector (CVE-2015-3814) - Android Logcat file parser (CVE-2015-3815, CVE-2015-3906) A remote attacker can exploit these vulnerabilities to cause Wireshark to crash or consume excessive CPU resources, either by injecting a specially crafted packet onto the wire or by convincing a user to read a malformed packet trace or PCAP file. Note that Nessus has not tested for these issues but has instead relied only on the application
    last seen2020-06-01
    modified2020-06-02
    plugin id83488
    published2015-05-15
    reporterThis script is Copyright (C) 2015-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/83488
    titleWireshark 1.10.x < 1.10.14 / 1.12.x < 1.12.5 Multiple DoS Vulnerabilities
  • NASL familySuSE Local Security Checks
    NASL idSUSE_SU-2015-1098-1.NASL
    descriptionWireshark was updated and fixes the following issues : CVE-2015-3811: The WCP dissector could crash while decompressing data. CVE-2015-3812: The X11 dissector could leak memory CVE-2015-3814: The IEEE 802.11 dissector could go into an infinite loop. Note that Tenable Network Security has extracted the preceding description block directly from the SUSE security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.
    last seen2020-06-01
    modified2020-06-02
    plugin id84361
    published2015-06-24
    reporterThis script is Copyright (C) 2015-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/84361
    titleSUSE SLED11 / SLES11 Security Update : wireshark (SUSE-SU-2015:1098-1)
  • NASL familySuSE Local Security Checks
    NASL idSUSE_SU-2015-1046-1.NASL
    descriptionWireshark was updated to 1.10.14 to fix four security issues. The following vulnerabilities have been fixed : - CVE-2015-3811: The WCP dissector could crash while decompressing data. (wnpa-sec-2015-14) - CVE-2015-3812: The X11 dissector could leak memory. (wnpa-sec-2015-15) - CVE-2015-3813: The packet reassembly code could leak memory. (wnpa-sec-2015-16) - CVE-2015-3814: The IEEE 802.11 dissector could go into an infinite loop. (wnpa-sec-2015-17) Note that Tenable Network Security has extracted the preceding description block directly from the SUSE security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.
    last seen2020-06-01
    modified2020-06-02
    plugin id84191
    published2015-06-15
    reporterThis script is Copyright (C) 2015-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/84191
    titleSUSE SLED12 / SLES12 Security Update : wireshark (SUSE-SU-2015:1046-1)
  • NASL familySuSE Local Security Checks
    NASL idOPENSUSE-2015-380.NASL
    descriptionWireshark was updated to 1.10.14 to fix three security issues and bugs. The following vulnerabilities were fixed : - CVE-2015-3811: The WCP dissector could crash while decompressing data (wnpa-sec-2015-14) - CVE-2015-3812: The X11 dissector could leak memory (wnpa-sec-2015-15) - CVE-2015-3814: The IEEE 802.11 dissector could go into an infinite loop (wnpa-sec-2015-17)
    last seen2020-06-05
    modified2015-05-26
    plugin id83806
    published2015-05-26
    reporterThis script is Copyright (C) 2015-2020 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/83806
    titleopenSUSE Security Update : Wireshark (openSUSE-2015-380)
  • NASL familySuSE Local Security Checks
    NASL idOPENSUSE-2015-379.NASL
    descriptionWireshark was updated to 1.12.5 to fix security issues and bugs. The following vulnerabilities have been fixed : - CVE-2015-3808, CVE-2015-3809: The LBMR dissector could go into an infinite loop. (wnpa-sec-2015-12) - CVE-2015-3810: The WebSocket dissector could recurse excessively. (wnpa-sec-2015-13) - CVE-2015-3811: The WCP dissector could crash while decompressing data. (wnpa-sec-2015-14) - CVE-2015-3812: The X11 dissector could leak memory. (wnpa-sec-2015-15) - CVE-2015-3813: The packet reassembly code could leak memory. (wnpa-sec-2015-16) - CVE-2015-3814: The IEEE 802.11 dissector could go into an infinite loop. (wnpa-sec-2015-17) - CVE-2015-3815: The Android Logcat file parser could crash. (wnpa-sec-2015-18)
    last seen2020-06-05
    modified2015-05-26
    plugin id83805
    published2015-05-26
    reporterThis script is Copyright (C) 2015-2020 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/83805
    titleopenSUSE Security Update : Wireshark (openSUSE-2015-379)
  • NASL familyFreeBSD Local Security Checks
    NASL idFREEBSD_PKG_A13500D0057011E5AAB1D050996490D0.NASL
    descriptionWireshark development team reports : The following vulnerabilities have been fixed. - wnpa-sec-2015-12 The LBMR dissector could go into an infinite loop. (Bug 11036) CVE-2015-3808, CVE-2015-3809 - wnpa-sec-2015-13 The WebSocket dissector could recurse excessively. (Bug 10989) CVE-2015-3810 - wnpa-sec-2015-14 The WCP dissector could crash while decompressing data. (Bug 10978) CVE-2015-3811 - wnpa-sec-2015-15 The X11 dissector could leak memory. (Bug 11088) CVE-2015-3812 - wnpa-sec-2015-16 The packet reassembly code could leak memory. (Bug 11129) CVE-2015-3813 - wnpa-sec-2015-17 The IEEE 802.11 dissector could go into an infinite loop. (Bug 11110) CVE-2015-3814 - wnpa-sec-2015-18 The Android Logcat file parser could crash. Discovered by Hanno Bock. (Bug 11188) CVE-2015-3815
    last seen2020-06-01
    modified2020-06-02
    plugin id83902
    published2015-05-29
    reporterThis script is Copyright (C) 2015-2018 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/83902
    titleFreeBSD : wireshark -- multiple vulnerabilities (a13500d0-0570-11e5-aab1-d050996490d0)