Unrated severityNVD Advisory· Published Sep 4, 2008· Updated Apr 23, 2026
CVE-2008-3933
CVE-2008-3933
Description
Wireshark (formerly Ethereal) 0.10.14 through 1.0.2 allows attackers to cause a denial of service (crash) via a packet with crafted zlib-compressed data that triggers an invalid read in the tvb_uncompress function.
Affected products
22cpe:2.3:a:wireshark:wireshark:0.10.2:*:*:*:*:*:*:*+ 21 more
- cpe:2.3:a:wireshark:wireshark:0.10.2:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.3:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.4:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.5:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.6:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.7:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.8:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.9:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.14:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.99.0:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.99.1:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.99.2:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.99.3:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.99.4:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.99.5:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.99.6:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.99.6a:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.99.7:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.99.8:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
21- www.wireshark.org/security/wnpa-sec-2008-05.htmlnvdPatch
- secunia.com/advisories/31864nvd
- secunia.com/advisories/31886nvd
- secunia.com/advisories/32028nvd
- secunia.com/advisories/32091nvd
- secunia.com/advisories/32944nvd
- security.gentoo.org/glsa/glsa-200809-17.xmlnvd
- support.avaya.com/elmodocs2/security/ASA-2008-392.htmnvd
- wiki.rpath.com/wiki/Advisories:rPSA-2008-0278nvd
- www.debian.org/security/2008/dsa-1673nvd
- www.mandriva.com/security/advisoriesnvd
- www.redhat.com/support/errata/RHSA-2008-0890.htmlnvd
- www.securityfocus.com/archive/1/496487/100/0/threadednvd
- www.securitytracker.com/idnvd
- www.vupen.com/english/advisories/2008/2493nvd
- www.vupen.com/english/advisories/2008/2773nvd
- bugs.wireshark.org/bugzilla/show_bug.cginvd
- bugs.wireshark.org/bugzilla/show_bug.cginvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9620nvd
- www.redhat.com/archives/fedora-package-announce/2008-September/msg00713.htmlnvd
- www.redhat.com/archives/fedora-package-announce/2008-September/msg00715.htmlnvd
News mentions
0No linked articles in our index yet.