Immunity, Inc.
Name wp_wireshark_enttec
CVE 2010-4538
Exploit Pack White_Phosphorus
DescriptionWireshark <= 1.4.2 ENTTEC Dissector Remote Overflow
NotesReferences: http://www.wireshark.org/security/wnpa-sec-2011-02.html
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5539
Notes:
MUST BE RUN AGAINST A BROADCAST ADDRESS x.x.x.255

This will send back a shell on Windows against V 1.4.2, will DOS anything else which is still a good thing :)


VersionsAffected: Wireshark <=1.4.2
Repeatability: One Time
Date public: 2010-12-31
CVE Url: http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-4538
CVE: 2010-4538
CVSS: 9.3

Learn more about the CANVAS Exploit Pack here: White_Phosphorus