CVE-2012-2393: Wireshark

Low severity, CVSS 3.3. EPSS: 3.8% chance of exploitation in the next 30 days.

epan/dissectors/packet-diameter.c in the DIAMETER dissector in Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 does not properly construct certain array data structures, which allows remote attackers to cause a denial of service (application crash) via a crafted packet that triggers incorrect memory allocation.

Affected products

  • Wireshark Wireshark: version 1.4.0 only; version 1.4.1 only; version 1.4.2 only; version 1.4.3 only; version 1.4.4 only; version 1.4.5 only; …

Published 2012-06-30. Last modified 2026-06-16.