← back
CVE-2015-8723

CVE-2015-8723

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 4.7%
from disclosure to weapon0 days
Published on NVDJan 4
1st PoCDec 16
exploitation probability
4.7%top 9% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
The AirPDcapPacketProcess function in epan/crypt/airpdcap.c in the 802.11 dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the relationship between the total length and the capture length, which allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) via a crafted packet.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.