Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2012-4294

EPSS 3.42% · P88
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2012-4294

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Buffer overflow in the channelised_fill_sdh_g707_format function in epan/dissectors/packet-erf.c in the ERF dissector in Wireshark 1.8.x before 1.8.2 allows remote attackers to execute arbitrary code via a large speed (aka rate) value.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Wireshark ERF解析器缓冲区溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Wireshark(前称Ethereal)是Wireshark团队开发的一套网络数据包分析软件。该软件的功能是截取网络数据包,并显示出详细的数据以供分析。 Wireshark 1.8.2之前的1.8.x版本中的ERF解析器中的epan/dissectors/packet-erf.c内的‘channelised_fill_sdh_g707_format’函数中存在缓冲区溢出漏洞。远程攻击者可利用该漏洞通过较大的speed(又名rate)值,执行任意代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2012-4294

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2012-4294

Please Login to view more intelligence information

Same Patch Batch · n/a · 2012-08-16 · 23 CVEs total

CVE-2012-4287Wireshark MongoDB解析器资源管理错误漏洞
CVE-2012-4298Wireshark 整数符号错误漏洞
CVE-2012-4297Wireshark GSM RLC MAC解析器缓冲区溢出漏洞
CVE-2012-4296Wireshark RTPS2解析器资源管理错误漏洞
CVE-2012-4295Wireshark ERF解析器数组索引错误漏洞
CVE-2012-4293Wireshark EtherCAT Mailbox解析器拒绝服务漏洞
CVE-2012-4292Wireshark STUN解析器输入验证漏洞
CVE-2012-4291Wireshark CIP解析器资源管理错误漏洞
CVE-2012-4290Wireshark CTDB解析器资源管理错误漏洞
CVE-2012-4289Wireshark AFP解析器资源管理错误漏洞
CVE-2012-4288Wireshark XTP解析器数字错误漏洞
CVE-2012-2283多款Iomega网络存储设备 安全绕过漏洞
CVE-2012-4286Wireshark pcap-ng文件解析器数字错误漏洞
CVE-2012-4285Wireshark DCP ETSI解析器数字错误漏洞
CVE-2012-3251HP Service Center Server 拒绝服务漏洞
CVE-2012-3250HP Service Manager Server 跨站脚本漏洞
CVE-2012-3249HP Fortify Software Security Center 多个未明信息泄露漏洞
CVE-2012-3248HP Fortify Software Security Center 多个未明信息泄露漏洞
CVE-2012-3247HP Integrity Server 未明拒绝服务漏洞
CVE-2012-3025Tridium Niagara AX Framework 加密问题漏洞

Showing top 20 of 23 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2012-4294

No comments yet


Leave a comment