Wireshark

  • Riverbed Technology
  • WinPcap
the world's foremost network protocol analyzer
  • Wireshark
    • About
    • Download
    • Blog
  • Get Help
    • Ask a Question
    • FAQs
    • Documentation
    • Mailing Lists
    • Online Tools
    • Wiki
    • Bug Tracker
  • Develop
    • Get Involved
    • Developer's Guide
    • Browse the Code
    • Latest Builds

Wireshark-bugs: [Wireshark-bugs] [Bug 3382] New: Format string overflow in PROFINET

Date Index Thread Index Other Months All Mailing Lists
Date Prev Date Next Thread Prev Thread Next


From: bugzilla-daemon@xxxxxxxxxxxxx
Date: Wed, 1 Apr 2009 13:51:37 -0700 (PDT)

https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=3382

           Summary: Format string overflow in PROFINET
           Product: Wireshark
           Version: 1.0.6
          Platform: Other
        OS/Version: All
            Status: NEW
          Severity: Blocker
          Priority: High
         Component: Wireshark
        AssignedTo: wireshark-bugs@xxxxxxxxxxxxx
        ReportedBy: gerald@xxxxxxxxxxxxx


Build Information:
Paste the COMPLETE build information from "Help->About Wireshark", "wireshark
-v", or "tshark -v".
--
The PROFINET dissector in 1.0.x is susceptible to a format string overflow, as
described at http://securitytracker.com/alerts/2009/Mar/1021957.html. Attached
is a capture file that demonstrates the flaw.

This was fixed in the 1.1 branch in r26652.


-- 
Configure bugmail: https://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.

  • Follow-Ups:
    • [Wireshark-bugs] [Bug 3382] Format string overflow in PROFINET
      • From: bugzilla-daemon
    • [Wireshark-bugs] [Bug 3382] Format string overflow in PROFINET
      • From: bugzilla-daemon
    • [Wireshark-bugs] [Bug 3382] Format string overflow in PROFINET
      • From: bugzilla-daemon
    • [Wireshark-bugs] [Bug 3382] Format string overflow in PROFINET
      • From: bugzilla-daemon
  • Prev by Date: [Wireshark-bugs] [Bug 3381] New: tipc v1 improvement
  • Next by Date: [Wireshark-bugs] [Bug 3382] Format string overflow in PROFINET
  • Previous by thread: [Wireshark-bugs] [Bug 3381] tipc v1 improvement
  • Next by thread: [Wireshark-bugs] [Bug 3382] Format string overflow in PROFINET
  • Index(es):
    • Date
    • Thread

Wireshark and the "fin" logo are registered trademarks of the Wireshark Foundation