Integer signedness error in the vwr_read_rec_data_ethernet function in wiretap/vwr.c in the Ixia IxVeriWave file parser in Wireshark 1.8.x before 1.8.2 allows user-assisted remote attackers to execute arbitrary code via a crafted packet-trace file that triggers a buffer overflow.
2012-08-16T10:38:09.140
2025-04-11T00:51:21.963
Deferred
CVSSv2: 5.4 (MEDIUM)
AV:A/AC:M/Au:N/C:P/I:P/A:P
5.5
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | sun | sunos | 5.11 | Yes |
Application | wireshark | wireshark | 1.8.0 | Yes |
Application | wireshark | wireshark | 1.8.1 | Yes |