Name: LDSS vulnerability in Wireshark
Docid: wnpa-sec-2010-13
Date: November 18, 2010
Versions affected: 1.2.0
Related: wnpa-sec-2010-14
(LDSS and ZigBee ZCL vulnerabilities in Wireshark
Wireshark 1.2.13 fixes the following vulnerability:
It may be possible to make Wireshark crash by injecting a series of malformed packets onto the wire or by convincing someone to read a malformed packet trace file.
Upgrade to Wireshark 1.2.13 or later.
If are running Wireshark 1.2.12 or earlier (including Ethereal) and cannot upgrade, you can work around each of the problems listed above by doing the following: