Multiple off-by-one errors in Wireshark (aka Ethereal) 0.9.7 to 0.99.0 have unknown impact and remote attack vectors via the (1) NCP NMAS and (2) NDPS dissectors.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade wireshark | Jul 30, 2024 | Jul 21, 2006 |
| Gentoo Linux | — | Upgrade net-analyzer/ethereal.Upgrade net-analyzer/wireshark. | Oct 30, 2017 | Jul 21, 2006 |
| Suse | — | Upgrade ethereal | Feb 17, 2015 | Jul 21, 2006 |
| Wireshark | — | Upgrade to Wireshark version 0.99.2 | Oct 4, 2017 | Jul 21, 2006 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub