VulnerabilityModified
CVE-2008-3141
Unspecified vulnerability in the RMI dissector in Wireshark (formerly Ethereal) 0.9.5 through 1.0.0 allows remote attackers to read system memory via unspecified vectors.
MEDIUM 4.9EPSS 1.21%
Does this matter?
Lower severity and a low EPSS score (1.21%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in the RMI dissector in Wireshark (formerly Ethereal) 0.9.5 through 1.0.0 allows remote attackers to read system memory via unspecified vectors.
- CVSS 2.0
- 4.9 MEDIUMAV:L/AC:L/Au:N/C:C/I:N/A:N
- EPSS
- 1.21% probability · 67th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- wireshark/wireshark
- Source
- cve@mitre.org
References
- http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00006.html
- http://secunia.com/advisories/30886Vendor Advisory
- http://secunia.com/advisories/30942
- http://secunia.com/advisories/31085
- http://secunia.com/advisories/31378Vendor Advisory
- http://secunia.com/advisories/31687Vendor Advisory
- http://secunia.com/advisories/32091Vendor Advisory
- http://secunia.com/advisories/32944
- http://security.gentoo.org/glsa/glsa-200808-04.xml
- http://securitytracker.com/id?1020404
- http://support.avaya.com/elmodocs2/security/ASA-2008-392.htm
- http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0212
- http://www.debian.org/security/2008/dsa-1673
- http://www.redhat.com/support/errata/RHSA-2008-0890.html
- http://www.securityfocus.com/archive/1/493882/100/0/threaded
- http://www.securityfocus.com/bid/30020Exploit, Patch
- http://www.vupen.com/english/advisories/2008/1982/references
- http://www.vupen.com/english/advisories/2008/2773
- http://www.wireshark.org/security/wnpa-sec-2008-03.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/43520
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11324
- https://www.redhat.com/archives/fedora-package-announce/2008-July/msg00544.html
- http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00006.html
- http://secunia.com/advisories/30886Vendor Advisory
- http://secunia.com/advisories/30942
- http://secunia.com/advisories/31085
- http://secunia.com/advisories/31378Vendor Advisory
- http://secunia.com/advisories/31687Vendor Advisory
- http://secunia.com/advisories/32091Vendor Advisory
- http://secunia.com/advisories/32944
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.