Unrated severityNVD Advisory· Published Aug 16, 2012· Updated Jun 16, 2026
CVE-2012-4298
CVE-2012-4298
Description
Integer signedness error in the vwr_read_rec_data_ethernet function in wiretap/vwr.c in the Ixia IxVeriWave file parser in Wireshark 1.8.x before 1.8.2 allows user-assisted remote attackers to execute arbitrary code via a crafted packet-trace file that triggers a buffer overflow.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- cpe:2.3:o:sun:sunos:5.11:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
12- anonsvn.wireshark.org/viewvc/trunk/wiretap/vwr.cnvdExploitPatch
- www.wireshark.org/security/wnpa-sec-2012-25.htmlnvdVendor Advisory
- anonsvn.wireshark.org/viewvcnvd
- secunia.com/advisories/50276nvd
- secunia.com/advisories/51363nvd
- secunia.com/advisories/54425nvd
- www.gentoo.org/security/en/glsa/glsa-201308-05.xmlnvd
- www.securityfocus.com/bid/55035nvd
- blogs.oracle.com/sunsecurity/entry/multiple_vulnerabilities_in_wireshark3nvd
- bugs.wireshark.org/bugzilla/show_bug.cginvd
- hermes.opensuse.org/messages/15514562nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15777nvd
News mentions
0No linked articles in our index yet.