[VIM] Wireshark ASN.1 BER Dissector DoS

rkeith rkeith at securityfocus.com
Fri Oct 15 11:34:16 CDT 2010


Hey George,

An oversight on out part not catching the relation. We will retire 43923 as a duplicate shortly.

Thanks again,
Rob

George A. Theall wrote:
> And while I have your attention, Rob, what are the differences between:
> 
> - BID 43197, which concerns a stack overflow / null pointer dereference
> in the ASN.1/BER dissector in Wireshark 1.4.0 discovered by penetration
> test team Of NCNIPC (China)
> (http://archives.neohapsis.com/archives/bugtraq/2010-09/0088.html)
> 
> - BID 43923, which corresponds to the wnpa-sec-2010-11 and
> wnpa-sec-2010-12 advisories.
> 
> 
> George

-- 
Rob Keith
Symantec


More information about the VIM mailing list