Unrated severityNVD Advisory· Published Dec 21, 2009· Updated Apr 23, 2026
CVE-2009-4376
CVE-2009-4376
Description
Buffer overflow in the daintree_sna_read function in the Daintree SNA file parser in Wireshark 1.2.0 through 1.2.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted packet.
Affected products
5cpe:2.3:a:wireshark:wireshark:1.2.0:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:wireshark:wireshark:1.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.4:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- www.vupen.com/english/advisories/2009/3596nvdPatchVendor Advisory
- bugs.wireshark.org/bugzilla/attachment.cginvdPatch
- bugs.wireshark.org/bugzilla/show_bug.cginvdPatch
- www.securityfocus.com/bid/37407nvdExploit
- secunia.com/advisories/37842nvdVendor Advisory
- www.wireshark.org/security/wnpa-sec-2009-09.htmlnvdVendor Advisory
- osvdb.org/61177nvd
- secunia.com/advisories/37916nvd
- www.securitytracker.com/idnvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16435nvd
- www.redhat.com/archives/fedora-package-announce/2009-December/msg01248.htmlnvd
News mentions
0No linked articles in our index yet.