Unspecified vulnerability in the OpcUa (OPC UA) dissector in Wireshark 0.99.6 through 1.0.8 and 1.2.0 through 1.2.1 allows remote attackers to cause a denial of service (memory and CPU consumption) via malformed OPCUA Service CallRequest packets.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade wireshark | Jul 30, 2024 | Sep 18, 2009 |
| Gentoo Linux | — | Upgrade net-analyzer/wireshark. | Oct 30, 2017 | Sep 18, 2009 |
| Suse | — | Upgrade libwireshark8Upgrade libwiretap6Upgrade libwscodecs1Upgrade libwireshark19Upgrade libwsutil8Upgrade wireshark-develUpgrade wiresharkUpgrade libwireshark9Upgrade libwsutil7Upgrade libwiretap15Upgrade libwsutil17Upgrade libwiretap16Upgrade wireshark-ui-qtUpgrade wireshark-gtkUpgrade libwiretap7Upgrade libwsutil16Upgrade libwireshark18 | Feb 17, 2015 | Jun 28, 2013 |
| Wireshark | — | Upgrade to Wireshark version 1.2.2Upgrade to Wireshark version 1.0.9 | May 3, 2018 | Sep 18, 2009 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub