Unrated severityNVD Advisory· Published Aug 13, 2010· Updated Jun 16, 2026
CVE-2010-2995
CVE-2010-2995
Description
The SigComp Universal Decompressor Virtual Machine (UDVM) in Wireshark 0.10.8 through 1.0.14 and 1.2.0 through 1.2.9 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to sigcomp-udvm.c and an off-by-one error, which triggers a buffer overflow, different vulnerabilities than CVE-2010-2287.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
34cpe:2.3:a:wireshark:wireshark:0.10.10:*:*:*:*:*:*:*+ 33 more
- cpe:2.3:a:wireshark:wireshark:0.10.10:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.11:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.12:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.13:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.14:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.8:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:0.10.9:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.10:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.11:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.12:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.13:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.14:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.4:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.5:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.6:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.7:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.8:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.0.9:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.4:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.5:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.6:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.7:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.8:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.2.9:*:*:*:*:*:*:*
- (no CPE)range: >=0.10.8 <=1.0.14, >=1.2.0 <=1.2.9
Patches
Vulnerability mechanics
References
9- secunia.com/advisories/42877nvdVendor Advisory
- secunia.com/advisories/43068nvdVendor Advisory
- www.vupen.com/english/advisories/2011/0076nvdVendor Advisory
- www.vupen.com/english/advisories/2011/0212nvdVendor Advisory
- www.wireshark.org/docs/relnotes/wireshark-1.2.10.htmlnvdVendor Advisory
- lists.opensuse.org/opensuse-security-announce/2011-01/msg00003.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.htmlnvd
- bugs.wireshark.org/bugzilla/show_bug.cginvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12049nvd
News mentions
0No linked articles in our index yet.