Back

MEDIUM

wireshark: Infinite loop in the RELOAD dissector (wnpa-sec-2013-21, upstream bug 8364) [A different flaw than CVE-2013-2487]

Published Mar 7, 2013

Description

The dissect_diagnosticrequest function in epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark 1.8.x before 1.8.6 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (infinite loop) via crafted integer values in a packet.

Affected products

Remediation

Red Hat statement

Not Vulnerable. This issue does not affect the version of wireshark as shipped with Red Hat Enterprise Linux 5 and 6.

Metrics

Weaknesses (2)

References (16)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Mar 7, 2013
Updated Aug 6, 2024
Reserved Mar 6, 2013
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Mar 6, 2013