CVE-2012-1593
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 11%
from disclosure to weapon8 days
Published on NVDApr 11
1st PoC+8d
exploitation probability
11%top 4% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
epan/dissectors/packet-ansi_a.c in the ANSI A dissector in Wireshark 1.4.x before 1.4.12 and 1.6.x before 1.6.6 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a malformed packet.
Affected products
n/a · n/apublic PoCs found — 2
cve_referencewww.exploit-db.com/exploits/18758unverifiedexploitdbwww.exploit-db.com/exploits/18758unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://anonsvn.wireshark.org/viewvc?view=revision&revision=40962http://lists.fedoraproject.org/pipermail/package-announce/2012-April/078769.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2012-April/078770.htmlhttp://lists.opensuse.org/opensuse-updates/2012-04/msg00060.htmlhttps://bugs.wireshark.org/bugzilla/show_bug.cgi?id=6823http://secunia.com/advisories/48548http://secunia.com/advisories/48986https://exchange.xforce.ibmcloud.com/vulnerabilities/74361https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14991http://www.exploit-db.com/exploits/18758http://www.openwall.com/lists/oss-security/2012/03/28/13http://www.securitytracker.com/id?1026874