๐ CVE-2015-8740 | Wireshark up to 2.0.0 TDS Dissector packet-tds.c dissect_tds7_colmetadata_token input validation (BID-79382 / EDB-38993)
๐ก Newskategorie: Sicherheitslรผcken
๐ Quelle: vuldb.com
A vulnerability, which was classified as critical, has been found in Wireshark up to 2.0.0. Affected by this issue is the function dissect_tds7_colmetadata_token
of the file epan/dissectors/packet-tds.c of the component TDS Dissector. The manipulation leads to improper input validation.
This vulnerability is handled as CVE-2015-8740. The attack needs to be initiated within the local network. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component. ...