← Zuruck zu CVEs
CVE-2015-8737
N/ABeschreibung
The mp2t_open function in wiretap/mp2t.c in the MP2T file parser in Wireshark 2.0.x before 2.0.1 does not validate the bit rate, which allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted file.
CVE Details
CVSS v3.1 BewertungN/A
Veroffentlicht1/4/2016
Zuletzt geandert4/12/2025
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
wireshark:wireshark
Schwachen (CWE)
CWE-20
Referenzen
http://www.securitytracker.com/id/1034551(cve@mitre.org)
http://www.wireshark.org/security/wnpa-sec-2015-55.html(cve@mitre.org)
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=11821(cve@mitre.org)
https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=e3fc691368af60bbbaec9e038ee6a6d3b7707955(cve@mitre.org)
https://security.gentoo.org/glsa/201604-05(cve@mitre.org)
http://www.securitytracker.com/id/1034551(af854a3a-2127-422b-91ae-364da2661108)
http://www.wireshark.org/security/wnpa-sec-2015-55.html(af854a3a-2127-422b-91ae-364da2661108)
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=11821(af854a3a-2127-422b-91ae-364da2661108)
https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=e3fc691368af60bbbaec9e038ee6a6d3b7707955(af854a3a-2127-422b-91ae-364da2661108)
https://security.gentoo.org/glsa/201604-05(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.