Bugzilla – Bug 769578
VUl-0: CVE-2012-3825,CVE-2012-3826: wireshark: Multiple integer overflows in Wireshark
Last modified: 2020-04-03 13:43:06 UTC
via CVE script: Name: CVE-2012-3825 Multiple integer overflows in Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 allow remote attackers +to cause a denial of service (infinite loop) via vectors related to the (1) BACapp and (2) Bluetooth HCI +dissectors, a different vulnerability than CVE-2012-2392. Reference: CONFIRM: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=7122 Reference: CONFIRM: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=7121 Reference: CONFIRM: http://www.wireshark.org/security/wnpa-sec-2012-08.html ====================================================== Name: CVE-2012-3826 Multiple integer underflows in Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 allow remote attackers +to cause a denial of service (loop) via vectors related to the R3 dissector, a different vulnerability +than CVE-2012-2392. Reference: CONFIRM: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=7125 Reference: CONFIRM: http://www.wireshark.org/security/wnpa-sec-2012-08.html
bugbot adjusting priority
Duplication of bug #763855.
I dont think its a dup, as it clearly states that its different from CVE-2012-2392, which is #763855.
(In reply to comment #3) > I dont think its a dup, as it clearly states that its different > from CVE-2012-2392, which is #763855. Sorry for misunderstanding. Although CVE-2012-3825 is different from CVE-2012-2392, they both point to the same wireshark link(http://www.wireshark.org/security/wnpa-sec-2012-08.html). Meanwhile, all the bugs[1][2][3] in CVE-2012-3825 already fixed in bug #763855 for all the sle wireshark maintenance version. So, there is no more work for me, I guess. [1] https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=7122 [2] https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=7121 [3] https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=7125
Ans what about CVE-2012-3826?
(In reply to comment #5) > Ans what about CVE-2012-3826? CVE-2012-3826 include one bug [1] which is also fixed in bng #763855. [1] https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=7125
Thanks :) *** This bug has been marked as a duplicate of bug 763855 ***