← back
CVE-2011-1140

CVE-2011-1140

23Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 13%
from disclosure to weapon0 days
Published on NVDMar 3
metasploitMar 1
exploitation probability
13%top 4% of all CVEs
observed exploitation
nono source reports it
Multiple stack consumption vulnerabilities in the dissect_ms_compressed_string and dissect_mscldap_string functions in Wireshark 1.0.x, 1.2.0 through 1.2.14, and 1.4.0 through 1.4.3 allow remote attackers to cause a denial of service (infinite recursion) via a crafted (1) SMB or (2) Connection-less LDAP (CLDAP) packet.
Affected products
n/a · n/a