Search

Found 433 results in 94ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-9759 medium 5.5 5.5 FIX debian debian sles wireshark 7d ago ROHC protocol dissector crash in Wireshark 4.6.0 to 4.6.5 and 4.4.0 to 4.4.15 allows denial of service
CVE-2026-6525 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago IEEE 802.11 protocol dissector crash in Wireshark 4.6.0 to 4.6.4
CVE-2026-5656 high 7.8 7.8 FIX slesdebian debian wireshark 1mo ago Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
CVE-2026-5405 high 7.8 7.8 FIX slesdebian debian wireshark 1mo ago RDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
CVE-2026-5404 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago K12 RF5 file parser crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-5403 high 7.8 7.8 FIX slesdebian debian wireshark 1mo ago SBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
CVE-2026-6870 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago GSM RP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6869 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago WebSocket protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6867 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago SMB2 protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6538 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago BEEP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6537 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago ZigBee protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6536 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago DLMS/COSEM protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4
CVE-2026-6535 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago Dissection engine zlib decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6534 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago USB HID protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6533 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago Dissection engine LZ77 decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6532 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago Kismet protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6531 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago SANE protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6530 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago DCP-ETSI protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6529 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago iLBC audio codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6528 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago TLS protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 allows denial of service
CVE-2026-6527 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago ASN.1 PER protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6526 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago RTSP protocol dissector crash in Wireshark 4.6.0 to 4.6.4
CVE-2026-6524 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago MySQL protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6523 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago GNW protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6522 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago RPKI-Router protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6521 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago OpenFlow v5 protocol dissector infinite loops in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6520 high 7.5 7.5 FIX slesdebian debian wireshark 1mo ago OpenFlow v6 protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6519 high 7.5 7.5 FIX slesdebian debian wireshark 1mo ago MBIM protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-5657 high 7.5 7.5 FIX slesdebian debian wireshark 1mo ago iLBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-5655 high 7.5 7.5 FIX slesdebian debian wireshark 1mo ago SDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 allows denial of service
CVE-2026-5654 high 7.5 7.5 FIX slesdebian debian wireshark 1mo ago AMR-NB codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-5653 high 7.5 7.5 FIX slesdebian debian wireshark 1mo ago DCP-ETSI protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-5409 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago Monero protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-5408 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago BT-DHT protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-5407 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago SMB2 protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-5406 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago FC-SWILS protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-5402 high 8.8 8.8 FIX slesdebian debian wireshark 1mo ago TLS protocol dissector heap overflow in Wireshark 4.6.0 to 4.6.4 allows denial of service and possible code execution
CVE-2026-5401 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-5299 medium 5.5 5.5 FIX slesdebian debian wireshark 1mo ago ICMPv6 PvD protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-7379 high 7.5 7.5 FIX slesdebian debian wireshark 1mo ago Memory leak in sharkd 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-7378 high 7.5 7.5 FIX slesdebian debian wireshark 1mo ago Crash in sharkd 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-7376 high 7.5 7.5 FIX slesdebian debian wireshark 1mo ago Crash in sharkd 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-7375 high 7.5 7.5 FIX slesdebian debian wireshark 1mo ago UDS protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-6868 high 7.5 7.5 FIX slesdebian debian wireshark 1mo ago HTTP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2017-17997 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark before 2.2.12, the MRDISC dissector misuses a NULL pointer and crashes. This was addressed in epan/dissectors/packet-mrdisc.c by validating an IPv4 address. This vulnerability is similar…
CVE-2017-17935 high 7.5 7.5 FIX debian debian wireshark 9y ago The File_read_line function in epan/wslua/wslua_file.c in Wireshark through 2.2.11 does not properly strip '\n' characters, which allows remote attackers to cause a denial of service (buffer underflo…
CVE-2017-17085 high 7.5 8.5 EXPFIX slesdebian debian wireshark 9y ago In Wireshark 2.4.0 to 2.4.2 and 2.2.0 to 2.2.10, the CIP Safety dissector could crash. This was addressed in epan/dissectors/packet-cipsafety.c by validating the packet length.
CVE-2017-17084 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.4.0 to 2.4.2 and 2.2.0 to 2.2.10, the IWARP_MPA dissector could crash. This was addressed in epan/dissectors/packet-iwarp-mpa.c by validating a ULPDU length.
CVE-2017-17083 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.4.0 to 2.4.2 and 2.2.0 to 2.2.10, the NetBIOS dissector could crash. This was addressed in epan/dissectors/packet-netbios.c by ensuring that write operations are bounded by the beginni…
CVE-2017-15193 high 7.5 7.5 FIX slesarch archdebian debian wireshark 9y ago In Wireshark 2.4.0 to 2.4.1 and 2.2.0 to 2.2.9, the MBIM dissector could crash or exhaust system memory. This was addressed in epan/dissectors/packet-mbim.c by changing the memory-allocation approach.
CVE-2017-15192 high 7.5 7.5 FIX slesarch archdebian debian wireshark 9y ago In Wireshark 2.4.0 to 2.4.1 and 2.2.0 to 2.2.9, the BT ATT dissector could crash. This was addressed in epan/dissectors/packet-btatt.c by considering a case where not all of the BTATT packets have th…
CVE-2017-15191 high 7.5 7.5 FIX slesarch archdebian debian wireshark 9y ago In Wireshark 2.4.0 to 2.4.1, 2.2.0 to 2.2.9, and 2.0.0 to 2.0.15, the DMP dissector could crash. This was addressed in epan/dissectors/packet-dmp.c by validating a string length.
CVE-2017-15190 high 7.5 7.5 FIX slesarch archdebian debian wireshark 9y ago In Wireshark 2.4.0 to 2.4.1, the RTSP dissector could crash. This was addressed in epan/dissectors/packet-rtsp.c by correcting the scope of a variable.
CVE-2017-15189 high 7.5 7.5 FIX slesarch archdebian debian wireshark 9y ago In Wireshark 2.4.0 to 2.4.1, the DOCSIS dissector could go into an infinite loop. This was addressed in plugins/docsis/packet-docsis.c by adding decrements.
CVE-2017-13767 high 7.5 7.5 FIX debian debian wireshark 9y ago In Wireshark 2.4.0, 2.2.0 to 2.2.8, and 2.0.0 to 2.0.14, the MSDP dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-msdp.c by adding length validation.
CVE-2017-13766 high 7.5 7.5 FIX debian debian wireshark 9y ago In Wireshark 2.4.0 and 2.2.0 to 2.2.8, the Profinet I/O dissector could crash with an out-of-bounds write. This was addressed in plugins/profinet/packet-dcerpc-pn-io.c by adding string validation.
CVE-2017-13765 high 7.5 7.5 FIX debian debian wireshark 9y ago In Wireshark 2.4.0, 2.2.0 to 2.2.8, and 2.0.0 to 2.0.14, the IrCOMM dissector has a buffer over-read and application crash. This was addressed in plugins/irda/packet-ircomm.c by adding length validat…
CVE-2017-13764 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.4.0, the Modbus dissector could crash with a NULL pointer dereference. This was addressed in epan/dissectors/packet-mbtcp.c by adding length validation.
CVE-2017-11411 high 7.5 7.5 FIX slesarch archdebian debian wireshark 9y ago In Wireshark through 2.0.13 and 2.2.x through 2.2.7, the openSAFETY dissector could crash or exhaust system memory. This was addressed in epan/dissectors/packet-opensafety.c by adding length validati…
CVE-2017-11410 high 7.5 7.5 FIX arch archdebian debian wireshark 9y ago In Wireshark through 2.0.13 and 2.2.x through 2.2.7, the WBXML dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissecto…
CVE-2017-11409 high 7.5 7.5 FIX debian debian wireshark 9y ago In Wireshark 2.0.0 to 2.0.13, the GPRS LLC dissector could go into a large loop. This was addressed in epan/dissectors/packet-gprs-llc.c by using a different integer data type.
CVE-2017-11408 high 7.5 7.5 FIX arch archdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.7 and 2.0.0 to 2.0.13, the AMQP dissector could crash. This was addressed in epan/dissectors/packet-amqp.c by checking for successful list dissection.
CVE-2017-11407 high 7.5 7.5 FIX arch archdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.7 and 2.0.0 to 2.0.13, the MQ dissector could crash. This was addressed in epan/dissectors/packet-mq.c by validating the fragment length before a reassembly attempt.
CVE-2017-11406 high 7.5 7.5 FIX arch archdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.7 and 2.0.0 to 2.0.13, the DOCSIS dissector could go into an infinite loop. This was addressed in plugins/docsis/packet-docsis.c by rejecting invalid Frame Control parameter…
CVE-2017-9766 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.7, PROFINET IO data with a high recursion depth allows remote attackers to cause a denial of service (stack exhaustion) in the dissect_IODWriteReq function in plugins/profinet/packet…
CVE-2017-9617 medium 5.5 5.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.7, deeply nested DAAP data may cause stack exhaustion (uncontrolled recursion) in the dissect_daap_one_tag function in epan/dissectors/packet-daap.c in the DAAP dissector.
CVE-2017-9616 medium 5.5 5.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.7, overly deep mp4 chunks may cause stack exhaustion (uncontrolled recursion) in the dissect_mp4_box function in epan/dissectors/file-mp4.c.
CVE-2017-9354 high 7.5 7.5 FIX arch arch slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the RGMP dissector could crash. This was addressed in epan/dissectors/packet-rgmp.c by validating an IPv4 address.
CVE-2017-9353 high 7.5 8.5 EXPFIX arch arch slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.6, the IPv6 dissector could crash. This was addressed in epan/dissectors/packet-ipv6.c by validating an IPv6 address.
CVE-2017-9352 high 7.5 7.5 FIX arch arch slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the Bazaar dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-bzr.c by ensuring that backwards parsing cannot occu…
CVE-2017-9351 high 7.5 7.5 FIX arch arch slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the DHCP dissector could read past the end of a buffer. This was addressed in epan/dissectors/packet-bootp.c by extracting the Vendor Class Identifier…
CVE-2017-9350 high 7.5 7.5 FIX arch arch slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the openSAFETY dissector could crash or exhaust system memory. This was addressed in epan/dissectors/packet-opensafety.c by checking for a negative le…
CVE-2017-9349 high 7.5 7.5 FIX arch arch slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the DICOM dissector has an infinite loop. This was addressed in epan/dissectors/packet-dcm.c by validating a length value.
CVE-2017-9348 high 7.5 7.5 FIX arch arch slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.6, the DOF dissector could read past the end of a buffer. This was addressed in epan/dissectors/packet-dof.c by validating a size value.
CVE-2017-9347 high 7.5 8.5 EXPFIX arch arch slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.6, the ROS dissector could crash with a NULL pointer dereference. This was addressed in epan/dissectors/asn1/ros/packet-ros-template.c by validating an OID.
CVE-2017-9346 high 7.5 7.5 FIX arch arch slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the SoulSeek dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-slsk.c by making loop bounds more explicit.
CVE-2017-9345 high 7.5 7.5 FIX arch arch slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the DNS dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-dns.c by trying to detect self-referencing pointers.
CVE-2017-9344 high 7.5 7.5 FIX arch arch slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the Bluetooth L2CAP dissector could divide by zero. This was addressed in epan/dissectors/packet-btl2cap.c by validating an interval value.
CVE-2017-9343 high 7.5 7.5 FIX arch arch slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the MSNIP dissector misuses a NULL pointer. This was addressed in epan/dissectors/packet-msnip.c by validating an IPv4 address.
CVE-2017-7748 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the WSP dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/pac…
CVE-2017-7747 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the PacketBB dissector could crash, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-packetbb.c…
CVE-2017-7746 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the SLSK dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/pa…
CVE-2017-7745 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the SIGCOMP dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors…
CVE-2017-7705 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the RPC over RDMA dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/diss…
CVE-2017-7704 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.5, the DOF dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-dof.c by using a…
CVE-2017-7703 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the IMAP dissector could crash, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-imap.c by calc…
CVE-2017-7702 high 7.5 7.5 FIX arch arch slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the WBXML dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/p…
CVE-2017-7701 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the BGP dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/pac…
CVE-2017-7700 medium 6.5 6.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the NetScaler file parser could go into an infinite loop, triggered by a malformed capture file. This was addressed in wiretap/netscaler.c by ensuring…
CVE-2016-7958 high 7.5 7.5 FIX debian debian wireshark 9y ago In Wireshark 2.2.0, the NCP dissector could crash, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/CMakeLists.txt by registering this dissector.
CVE-2016-7957 high 7.5 7.5 FIX debian debian wireshark 9y ago In Wireshark 2.2.0, the Bluetooth L2CAP dissector could crash, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-btl2cap.c by avoiding use of a s…
CVE-2017-6474 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a NetScaler file parser infinite loop, triggered by a malformed capture file. This was addressed in wiretap/netscaler.c by validating record …
CVE-2017-6473 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a K12 file parser crash, triggered by a malformed capture file. This was addressed in wiretap/k12.c by validating the relationships between l…
CVE-2017-6472 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is an RTMPT dissector infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-rtm…
CVE-2017-6471 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a WSP infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-wsp.c by validat…
CVE-2017-6470 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is an IAX2 infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-iax2.c by cons…
CVE-2017-6469 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is an LDSS dissector crash, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-ldss.c by en…
CVE-2017-6468 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a NetScaler file parser crash, triggered by a malformed capture file. This was addressed in wiretap/netscaler.c by validating the relationshi…
CVE-2017-6467 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a Netscaler file parser infinite loop, triggered by a malformed capture file. This was addressed in wiretap/netscaler.c by changing the restr…
CVE-2017-6014 high 7.5 7.5 FIX slesdebian debian wireshark 9y ago In Wireshark 2.2.4 and earlier, a crafted or malformed STANAG 4607 capture file will cause an infinite loop and memory exhaustion. If the packet size field in a packet header is null, the offset to r…