Wireshark-bugs: [Wireshark-bugs] [Bug 5133] Wireshark vulnerable to DLL hijacking

Date: Fri, 27 Aug 2010 09:08:44 -0700 (PDT)
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5133

--- Comment #14 from Chris Maynard <christopher.maynard@xxxxxxxxx> 2010-08-27 09:08:41 PDT ---
BTW, I'm running 1.2.10 (with some additional dissectors added but not much
else) on Windows XP SP3, build 2600 and I can't get this problem to occur.

I've got the PoC airpcap.dll and a small capture file in a directory on a
network share, but double-clicking the capture file launches Wireshark as
normal without any calculator popping up.  Wireshark was built with AirPcap
4.1.1 build 1838 and sysinternal's FindDLLs v2.25 reveals the correct
airpcap.dll is loaded:

0x02b30000  0x28000   4.01.0001.1838  C:\WINDOWS\system32\airpcap.dll

I guess I'm missing something?  Or is it possible some fix has been pushed out
to my laptop already???

-- 
Configure bugmail: https://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.