Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://secunia.com/advisories/38257/
http://www.wireshark.org/security/wnpa-sec-2010-02.html http://www.vuxml.org/freebsd/bb0a8795-15dc-11df-bf0a-002170daae37.html
Insight
The following packages are affected:
wireshark
wireshark-lite
CVE-2010-0304
Multiple buffer overflows in the LWRES dissector in Wireshark 0.9.15 through 1.0.10 and 1.2.0 through 1.2.5 allow remote attackers to cause a denial of service (crash) via a malformed packet, as demonstrated using a stack-based buffer overflow to the
dissect_getaddrsbyname_request function.
Severity
Classification
-
CVE CVE-2010-0304 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities