Candidate: CVE-2011-3266 PublicDate: 2011-08-24 00:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3266 http://www.securityfocus.com/archive/1/archive/1/519049/100/0/threaded Description: The proto_tree_add_item function in Wireshark 1.6.0 through 1.6.1 and 1.4.0 through 1.4.8, when the IKEv1 protocol dissector is used, allows user-assisted remote attackers to cause a denial of service (infinite loop) via vectors involving a malformed IKE packet and many items in a tree. Ubuntu-Description: Notes: Bugs: https://bugs.edge.launchpad.net/ubuntu/+source/wireshark/+bug/845892 Priority: low Discovered-by: Assigned-to: CVSS: Patches_wireshark: upstream_wireshark: released (1.6.2) hardy_wireshark: ignored (reached end-of-life) lucid_wireshark: ignored (reached end-of-life) maverick_wireshark: ignored (reached end-of-life) natty_wireshark: ignored (reached end-of-life) oneiric_wireshark: released (1.6.2-1) precise_wireshark: released (1.6.2-1) quantal_wireshark: released (1.6.2-1) raring_wireshark: released (1.6.2-1) saucy_wireshark: released (1.6.2-1) devel_wireshark: released (1.6.2-1)