CVE-2013-3560

Published: 25 May 2013

The dissect_dsmcc_un_download function in epan/dissectors/packet-mpeg-dsmcc.c in the MPEG DSM-CC dissector in Wireshark 1.8.x before 1.8.7 uses an incorrect format string, which allows remote attackers to cause a denial of service (application crash) via a malformed packet.

Priority

Medium

Status

Package Release Status
wireshark
Launchpad, Ubuntu, Debian
Upstream
Released (1.8.7)
Ubuntu 14.04 ESM (Trusty Tahr) Not vulnerable
(1.10.6-1)
Patches:
Upstream: http://anonsvn.wireshark.org/viewvc?view=revision&revision=48332