Wireshark 1.0.x Malformed .ncf packet capture Local Denial of Service PoC
2008-09-29 19:01:05Wireshark 1.0.x .ncf local denial of service
author: Shinnok
Description
Wireshark 1.0.x crashes as a result of a failed assertion when dealing
with a malformed Tamosoft CommView .ncf packet capture:
Err file wtap.c: line 620 (wtap_read): assertion failed:
(wth->phdr.pkt_encap != WTAP_ENCAP_PER_PACKET)
http://milw0rm.com/sploits/2008-wireshark.ncf
#
Fixes
No fixesIn order to submit a new fix you need to be registered.

