Sploitus

CVE-2009-3829

1 known exploit for CVE-2009-3829

Integer overflow in wiretap/erf.c in Wireshark before 1.2.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted erf file, related to an "unsigned integer wrap vulnerability."

Affected products
Debian, Red Hat, Wireshark, Ethereal
Wireshark
≤ 1.2.1, 0.6, 0.7.9, 0.8.16, 0.8.19, 0.8.20, 0.9.2, 0.9.5, 0.9.6, 0.9.7, 0.9.8, 0.9.10, 0.9.14, 0.10, 0.10.1, 0.10.2, 0.10.3, 0.10.4, 0.10.5, 0.10.6, 0.10.7, 0.10.8, 0.10.9, 0.10.10, 0.10.11, 0.10.12, 0.10.13, 0.10.14, 0.99, 0.99.0, 0.99.1, 0.99.2, 0.99.3, 0.99.4, 0.99.5, 0.99.6, 0.99.6a, 0.99.7, 0.99.8, 0.99.9
CVSS 2.0
9.3 HIGH
EPSS
6.1% (93th percentile)
Weakness
CWE-189
NVD status
Modified
Published
2009-10-30
CVE-2009-3829 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2009-3829

Proof-of-concept code and exploit modules indexed by Sploitus