CVE-2015-8733
La función ngsniffer_process_record en wiretap/ngsniffer.c en el analizador de archivo Sniffer en Wireshark 1.12.x en versiones anteriores a 1.12.9 y 2.0.x en versiones anteriores a 2.0.1 no valida las relaciones entre la longitud de los registros y la longitud de las cabeceras de los registros, lo que permite a atacantes remotos causar una denegación de servicio (lectura fuera de rango y caída de aplicación) a través de un archivo manipulado.
CVSS
- Versión: 3.0
- Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
- Puntuación base: 5.5
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 4.10%
- Percentil entre todas las CVEs puntuadas: 90
- Fecha de la puntuación: 8/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
💥 Exploits públicos
Hay código de explotación o plantillas de detección públicos. No es lo mismo que explotación activa confirmada (KEV), pero aumenta el riesgo: parchee con prioridad.
- Publicado en Exploit-DB · Wireshark - 'infer_pkt_encap' Heap Out-of-Bounds Read (22/12/2015)
Tecnologías afectadas (1)
CWE
- CWE-20
Referencias
- http://www.debian.org/security/2016/dsa-3505
- http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.html
- http://www.securityfocus.com/bid/79814
- http://www.securitytracker.com/id/1034551
- http://www.wireshark.org/security/wnpa-sec-2015-51.html
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=11827
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=53a3e53fce30523d11ab3df319fba7b75d63076f
- https://security.gentoo.org/glsa/201604-05
- http://www.debian.org/security/2016/dsa-3505
- http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.html
- http://www.securityfocus.com/bid/79814
- http://www.securitytracker.com/id/1034551
- http://www.wireshark.org/security/wnpa-sec-2015-51.html
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=11827
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=53a3e53fce30523d11ab3df319fba7b75d63076f
- https://security.gentoo.org/glsa/201604-05
JSON original (NVD)
Mostrar
{
"id": "CVE-2015-8733",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 4.3,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P",
"authentication": "NONE",
"integrityImpact": "NONE",
"accessComplexity": "MEDIUM",
"availabilityImpact": "PARTIAL",
"confidentialityImpact": "NONE"
},
"acInsufInfo": false,
"impactScore": 2.9,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 8.6,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
],
"cvssMetricV30": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.0",
"baseScore": 5.5,
"attackVector": "LOCAL",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
"integrityImpact": "NONE",
"userInteraction": "REQUIRED",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "NONE",
"confidentialityImpact": "NONE"
},
"impactScore": 3.6,
"exploitabilityScore": 1.8
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2016-01-04T05:59:23.863",
"references": [
{
"url": "http://www.debian.org/security/2016/dsa-3505",
"source": "cve@mitre.org"
},
{
"url": "http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.html",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/79814",
"source": "cve@mitre.org"
},
{
"url": "http://www.securitytracker.com/id/1034551",
"source": "cve@mitre.org"
},
{
"url": "http://www.wireshark.org/security/wnpa-sec-2015-51.html",
"tags": [
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=11827",
"source": "cve@mitre.org"
},
{
"url": "https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=53a3e53fce30523d11ab3df319fba7b75d63076f",
"source": "cve@mitre.org"
},
{
"url": "https://security.gentoo.org/glsa/201604-05",
"source": "cve@mitre.org"
},
{
"url": "http://www.debian.org/security/2016/dsa-3505",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/79814",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securitytracker.com/id/1034551",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.wireshark.org/security/wnpa-sec-2015-51.html",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=11827",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=53a3e53fce30523d11ab3df319fba7b75d63076f",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://security.gentoo.org/glsa/201604-05",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-20"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "The ngsniffer_process_record function in wiretap/ngsniffer.c in the Sniffer file parser in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the relationships between record lengths and record header lengths, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted file."
},
{
"lang": "es",
"value": "La función ngsniffer_process_record en wiretap/ngsniffer.c en el analizador de archivo Sniffer en Wireshark 1.12.x en versiones anteriores a 1.12.9 y 2.0.x en versiones anteriores a 2.0.1 no valida las relaciones entre la longitud de los registros y la longitud de las cabeceras de los registros, lo que permite a atacantes remotos causar una denegación de servicio (lectura fuera de rango y caída de aplicación) a través de un archivo manipulado."
}
],
"lastModified": "2026-06-17T00:35:07.937",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:wireshark:wireshark:1.12.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "29AC5E99-9C21-4C2E-AE68-A4B887318577"
},
{
"criteria": "cpe:2.3:a:wireshark:wireshark:1.12.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B90C8934-01D8-4027-8A38-0B3230CC5077"
},
{
"criteria": "cpe:2.3:a:wireshark:wireshark:1.12.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "49C89A62-69E2-40C5-9C75-FA6601A935A2"
},
{
"criteria": "cpe:2.3:a:wireshark:wireshark:1.12.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1946DDC9-E49F-4601-8448-E73B0480C880"
},
{
"criteria": "cpe:2.3:a:wireshark:wireshark:1.12.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E2F85560-F43E-46C5-9CD1-1A1D66E21580"
},
{
"criteria": "cpe:2.3:a:wireshark:wireshark:1.12.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2518D86A-623D-431E-9574-32B677D5FB94"
},
{
"criteria": "cpe:2.3:a:wireshark:wireshark:1.12.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FEA2B085-01D2-4707-A9F7-6545E4D6D99A"
},
{
"criteria": "cpe:2.3:a:wireshark:wireshark:1.12.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FE4BBF1A-4303-456C-AD19-F5BCF6FDD76B"
},
{
"criteria": "cpe:2.3:a:wireshark:wireshark:1.12.8:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AD3D5FFB-1A09-4A06-8E83-DF72E39E1891"
},
{
"criteria": "cpe:2.3:a:wireshark:wireshark:2.0.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "80E2A443-32DB-4C8B-8D2D-AE4F80A154A1"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}