Candidate: CVE-2008-4685 PublicDate: 2008-10-22 18:00:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4685 Description: Use-after-free vulnerability in the dissect_q931_cause_ie function in packet-q931.c in the Q.931 dissector in Wireshark 0.10.3 through 1.0.3 allows remote attackers to cause a denial of service (application crash or abort) via certain packets that trigger an exception. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_wireshark: upstream_wireshark: released (1.0.4) dapper_wireshark: DNE gutsy_wireshark: released (0.99.6rel-3ubuntu0.4) hardy_wireshark: released (1.0.0-1ubuntu0.2) intrepid_wireshark: released (1.0.3-1ubuntu2.2) jaunty_wireshark: not-affected (1.0.6-1ubuntu1) karmic_wireshark: not-affected (1.0.6-1ubuntu1) devel_wireshark: not-affected (1.0.6-1ubuntu1) Patches_ethereal: upstream_ethereal: needs-triage dapper_ethereal: ignored (reached end-of-life) gutsy_ethereal: DNE hardy_ethereal: DNE intrepid_ethereal: DNE jaunty_ethereal: DNE karmic_ethereal: DNE devel_ethereal: DNE