PoC Index

CVE-2016-6504

MEDIUM 5.9EPSS 6.6%

epan/dissectors/packet-ncp2222.inc in the NDS dissector in Wireshark 1.12.x before 1.12.13 does not properly maintain a ptvc data structure, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted packet.

CVSS v3.0
5.9 MEDIUMCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS v2.0
4.3 MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
EPSS
6.59% chance of exploitation in the next 30 days, 93th percentile
Published
2016-08-06
Updated
2024-08-06

ExploitDB entries (1)

References

Related