CVE-2008-3933

CVSS 3.3 - LOW
Description

Wireshark (formerly Ethereal) 0.10.14 through 1.0.2 allows attackers to cause a denial of service (crash) via a packet with crafted zlib-compressed data that triggers an invalid read in the tvb_uncompress function.

Affected Products
22
Vendor Product Version
wireshark wireshark 0.10.2
wireshark wireshark 0.10.3
wireshark wireshark 0.10.4
wireshark wireshark 0.10.5
wireshark wireshark 0.10.6
wireshark wireshark 0.10.7
wireshark wireshark 0.10.8
wireshark wireshark 0.10.9
wireshark wireshark 0.10.14
wireshark wireshark 0.99.0
wireshark wireshark 0.99.1
wireshark wireshark 0.99.2
wireshark wireshark 0.99.3
wireshark wireshark 0.99.4
wireshark wireshark 0.99.5
wireshark wireshark 0.99.6
wireshark wireshark 0.99.6a
wireshark wireshark 0.99.7
wireshark wireshark 0.99.8
wireshark wireshark 1.0.0
wireshark wireshark 1.0.1
wireshark wireshark 1.0.2
Weakness Types
CWE-20
CVE Information
CVE ID:
CVE-2008-3933
Published:
2008-09-04
Modified:
2026-04-23
CVSS Score:
3.3
Severity:
LOW
Vector:
AV:A/AC:L/Au:N/C:N/I:N/A:P
Affected Vendors
wireshark
Quick Actions
CVSS Severity Scale
0.0 - 3.9 LOW
4.0 - 6.9 MEDIUM
7.0 - 8.9 HIGH
9.0 - 10.0 CRITICAL