CVE-2013-4080

Publication date 9 June 2013

Last updated 24 July 2024


Ubuntu priority

The dissect_r3_upstreamcommand_queryconfig function in epan/dissectors/packet-assa_r3.c in the Assa Abloy R3 dissector in Wireshark 1.8.x before 1.8.8 does not properly handle a zero-length item, which allows remote attackers to cause a denial of service (infinite loop, and CPU and memory consumption) via a crafted packet.

Status

Package Ubuntu Release Status
wireshark 14.10 utopic
Not affected
14.04 LTS trusty
Not affected
13.10 saucy Ignored end of life
13.04 raring Ignored end of life
12.10 quantal Ignored end of life
12.04 LTS precise
Not affected
10.04 LTS lucid Ignored end of life