Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2016-4077

EPSS 0.22% · P44
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2016-4077

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
epan/reassemble.c in TShark in Wireshark 2.0.x before 2.0.3 relies on incorrect special-case handling of truncated Tvb data structures, which allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted packet.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Wireshark TShark 拒绝服务漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Wireshark(前称Ethereal)是Wireshark团队开发的一套网络数据包分析软件。该软件的功能是截取网络数据包,并显示出详细的数据以供分析。 Wireshark 2.0.3之前2.0.x版本的TShark中的epan/reassemble.c文件存在安全漏洞,该漏洞源于程序使用不正确的special-case方式处理缩短的Tvb数据结构体。远程攻击者可通过发送特制的数据包利用该漏洞造成拒绝服务(释放后重用和应用程序崩溃)。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2016-4077

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2016-4077

Please Login to view more intelligence information

Same Patch Batch · n/a · 2016-04-25 · 29 CVEs total

CVE-2016-4079Wireshark PKTC解析器拒绝服务漏洞
CVE-2016-2115Samba 安全漏洞
CVE-2016-2114Samba SMB1 安全漏洞
CVE-2016-2113Samba 安全漏洞
CVE-2016-2112Samba bundled LDAP 安全漏洞
CVE-2016-2111Samba NETLOGON 安全漏洞
CVE-2016-2110Samba NTLMSSP 安全漏洞
CVE-2015-5370Samba 安全漏洞
CVE-2016-4085Wireshark NCP解析器基于栈的缓冲区溢出漏洞
CVE-2016-4084Wireshark MS-WSP解析器整数符号错误漏洞
CVE-2016-4083Wireshark MS-WSP解析器拒绝服务漏洞
CVE-2016-4082Wireshark GSM CBCH解析器拒绝服务漏洞
CVE-2016-4081Wireshark IAX2解析器拒绝服务漏洞
CVE-2016-4080Wireshark PKTC解析器拒绝服务漏洞
CVE-2016-1185Cybozu kintone for Android 安全漏洞
CVE-2016-4078Wireshark IEEE 802.11解析器拒绝服务漏洞
CVE-2016-4076Wireshark NCP解析器拒绝服务漏洞
CVE-2016-4006Wireshark 拒绝服务漏洞
CVE-2016-4054Squid HTTP Caching Proxy 缓冲区错误漏洞
CVE-2016-4053Squid HTTP Caching Proxy 安全漏洞

Showing top 20 of 29 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2016-4077

No comments yet


Leave a comment