{"id":"DEBIAN-CVE-2015-2191","details":"Integer overflow in the dissect_tnef function in epan/dissectors/packet-tnef.c in the TNEF dissector in Wireshark 1.10.x before 1.10.13 and 1.12.x before 1.12.4 allows remote attackers to cause a denial of service (infinite loop) via a crafted length field in a packet.","modified":"2026-04-28T20:15:43.972573Z","published":"2015-03-08T02:59:05.777Z","upstream":["CVE-2015-2191"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2015-2191"}],"affected":[{"package":{"name":"wireshark","ecosystem":"Debian:11","purl":"pkg:deb/debian/wireshark?arch=source"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.12.1+g01b65bf-4"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2015-2191.json"}},{"package":{"name":"wireshark","ecosystem":"Debian:12","purl":"pkg:deb/debian/wireshark?arch=source"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.12.1+g01b65bf-4"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2015-2191.json"}},{"package":{"name":"wireshark","ecosystem":"Debian:13","purl":"pkg:deb/debian/wireshark?arch=source"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.12.1+g01b65bf-4"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2015-2191.json"}},{"package":{"name":"wireshark","ecosystem":"Debian:14","purl":"pkg:deb/debian/wireshark?arch=source"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.12.1+g01b65bf-4"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2015-2191.json"}}],"schema_version":"1.7.5"}