Unrated severityNVD Advisory· Published Mar 7, 2013· Updated Apr 29, 2026
CVE-2013-2477
CVE-2013-2477
Description
The CSN.1 dissector in Wireshark 1.8.x before 1.8.6 does not properly manage function pointers, which allows remote attackers to cause a denial of service (application crash) via a malformed packet.
Affected products
9cpe:2.3:a:wireshark:wireshark:1.8.0:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:wireshark:wireshark:1.8.0:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.8.1:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.8.2:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.8.3:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.8.4:*:*:*:*:*:*:*
- cpe:2.3:a:wireshark:wireshark:1.8.5:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.wireshark.org/security/wnpa-sec-2013-12.htmlnvdVendor Advisory
- anonsvn.wireshark.org/viewvcnvd
- lists.opensuse.org/opensuse-updates/2013-03/msg00065.htmlnvd
- lists.opensuse.org/opensuse-updates/2013-03/msg00077.htmlnvd
- secunia.com/advisories/52471nvd
- www.wireshark.org/docs/relnotes/wireshark-1.8.6.htmlnvd
- bugs.wireshark.org/bugzilla/show_bug.cginvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16589nvd
News mentions
0No linked articles in our index yet.