Overview
Wireshark contains a vulnerability in the SCSI dissector that may cause a denial-of-service condition.
Description
The SCSI dissector in Wireshark contains an unspecified error that may allow remote attackers to cause a denial-of-service condition. Wireshark states that Wireshark version 0.99.2 is vulnerable.  | 
Impact
A remote attacker may be able to cause a denial-of-service condition.  | 
Solution
Update  | 
Workaround 
  | 
Vendor Information
CVSS Metrics
| Group | Score | Vector | 
|---|---|---|
| Base | ||
| Temporal | ||
| Environmental | 
References
- http://www.wireshark.org/security/wnpa-sec-2006-02.html
 - http://www.securityfocus.com/bid/19690
 - http://www.frsirt.com/english/advisories/2006/3370
 - http://securitytracker.com/id?1016736
 - http://secunia.com/advisories/21597
 - http://secunia.com/advisories/21649
 - http://secunia.com/advisories/21619
 - http://secunia.com/advisories/21682
 - http://secunia.com/advisories/21885
 - http://xforce.iss.net/xforce/xfdb/28550
 - http://xforce.iss.net/xforce/xfdb/28553
 - https://issues.rpath.com/browse/RPL-597
 - http://secunia.com/advisories/22378/
 
Acknowledgements
This vulnerability was reported in Wireshark document wnpa-sec-2006-02.
This document was written by Katie Steiner.
Other Information
| CVE IDs: | CVE-2006-4330 | 
| Date Public: | 2006-08-24 | 
| Date First Published: | 2006-10-25 | 
| Date Last Updated: | 2006-12-20 15:36 UTC | 
| Document Revision: | 14 |