Wireshark CSN.1 Dissector CsnStreamDissector Function Malformed Packet Parsing Infinite Loop Remote DoS Vulnerability
4 Apr. 2013
Summary
Wireshark CSN.1 dissector epan/dissectors/packet-csn1.c csnstreamdissector function malformed packet parsing infinite loop remote suffers from denial of service vulnerability
Credit:
The information has been provided by Laurent Butti.
Wireshark contains a flaw in the csnStreamDissector function in epan/dissectors/packet-csn1.c of the CSN.1 dissector that may allow a remote denial of service. This issue is triggered during the parsing of a specially crafted packet, which will result in an infinite loop and a consumption of system resources, ultimately leading the program becoming unresponsive.