Wireshark 0.99.6 through 1.0.5 allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted Tektronix K12 text capture file, as demonstrated by a file with exactly one frame.
CVSS Details
- CVSS 3.1 Base Score: 6.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade wireshark-gnomeUpgrade wireshark | Dec 1, 2016 | Feb 16, 2009 |
| Debian | — | Upgrade wireshark | Jul 30, 2024 | Feb 16, 2009 |
| Freebsd | — | Upgrade tethereal-liteUpgrade tetherealUpgrade wiresharkUpgrade wireshark-liteUpgrade etherealUpgrade ethereal-lite | Dec 10, 2025 | Mar 22, 2009 |
| Gentoo Linux | — | Upgrade net-analyzer/wireshark. | Oct 30, 2017 | Feb 16, 2009 |
| Oracle_linux | — | Upgrade wiresharkUpgrade wireshark-gnome | Oct 16, 2024 | Feb 16, 2009 |
| Suse | — | Upgrade wireshark-develUpgrade wireshark | Feb 17, 2015 | Feb 16, 2009 |
| Ubuntu | — | Upgrade wireshark | Nov 19, 2024 | Feb 16, 2009 |
| Wireshark | — | Upgrade to Wireshark version 1.0.6 | May 3, 2018 | Feb 16, 2009 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub