wireshark: multiple vulnerabilities
Posted Feb 16, 2007 15:19 UTC (Fri) by
jmayer (subscriber, #595)
In reply to:
wireshark: multiple vulnerabilities by bronson
Parent article:
wireshark: multiple vulnerabilities
> Seems a little rich to call that a DoS, much less a full-on security
vulnerability.
But it is: In several environments tshark (the command line version of
wireshark) is being used to analyze traffic on the fly, create statistics
and (AFAIK) even evaluate the output in some sort of mini-ids. So if you
manage to send wireshark into an infinite loop, then this may easily have
more than just trivial consequences.
(
Log in to post comments)