CVE-2012-0042: Red Hat Enterprise Linux

Low severity, CVSS 2.9. EPSS: 1.9% chance of exploitation in the next 30 days.

Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 does not properly perform certain string conversions, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted packet, related to epan/to_str.c.

Affected products

  • Red Hat Enterprise Linux: version 5 only
  • Wireshark Wireshark: version 1.6.0 only; version 1.6.1 only; version 1.6.2 only; version 1.6.3 only; version 1.6.4 only; version 1.4.0 only; …

Published 2012-04-11. Last modified 2026-06-16.