CVE-2012-2394: Wireshark

Low severity, CVSS 3.3. EPSS: 4% chance of exploitation in the next 30 days.

Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 on the SPARC and Itanium platforms does not properly perform data alignment for a certain structure member, which allows remote attackers to cause a denial of service (application crash) via a (1) ICMP or (2) ICMPv6 Echo Request packet.

Affected products

  • Wireshark Wireshark: version 1.4.0 only; version 1.4.1 only; version 1.4.2 only; version 1.4.3 only; version 1.4.4 only; version 1.4.5 only; …

Published 2012-06-30. Last modified 2026-06-16.