PublicDate: 2008-09-04 19:41:00 UTC Candidate: CVE-2008-3933 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3933 Description: Wireshark (formerly Ethereal) 0.10.14 through 1.0.2 allows attackers to cause a denial of service (crash) via a packet with crafted zlib-compressed data that triggers an invalid read in the tvb_uncompress function. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_ethereal: upstream_ethereal: needs-triage dapper_ethereal: ignored (reached end-of-life) feisty_ethereal: DNE gutsy_ethereal: DNE hardy_ethereal: DNE intrepid_ethereal: DNE jaunty_ethereal: DNE karmic_ethereal: DNE lucid_ethereal: DNE maverick_ethereal: DNE natty_ethereal: DNE oneiric_ethereal: DNE devel_ethereal: DNE Patches_wireshark: upstream_wireshark: released (1.0.3-1) dapper_wireshark: DNE feisty_wireshark: needed (reached end-of-life) gutsy_wireshark: needed (reached end-of-life) hardy_wireshark: ignored (reached end-of-life) intrepid_wireshark: not-affected (1.0.3-1ubuntu1) jaunty_wireshark: not-affected (1.0.3-1ubuntu1) karmic_wireshark: not-affected (1.0.3-1ubuntu1) lucid_wireshark: not-affected (1.0.3-1ubuntu1) maverick_wireshark: not-affected (1.0.3-1ubuntu1) natty_wireshark: not-affected (1.0.3-1ubuntu1) oneiric_wireshark: not-affected (1.0.3-1ubuntu1) devel_wireshark: not-affected (1.0.3-1ubuntu1)