CVE-2015-8736
- EPSS 0.69%
- Veröffentlicht 04.01.2016 05:59:26
- Zuletzt bearbeitet 12.04.2025 10:46:40
The mp2t_find_next_pcr function in wiretap/mp2t.c in the MP2T file parser in Wireshark 2.0.x before 2.0.1 does not reserve memory for a trailer, which allows remote attackers to cause a denial of service (stack-based buffer overflow and application c...
CVE-2015-8735
- EPSS 0.6%
- Veröffentlicht 04.01.2016 05:59:25
- Zuletzt bearbeitet 12.04.2025 10:46:40
The get_value function in epan/dissectors/packet-btatt.c in the Bluetooth Attribute (aka BT ATT) dissector in Wireshark 2.0.x before 2.0.1 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (invalid write ...
CVE-2015-8734
- EPSS 0.09%
- Veröffentlicht 04.01.2016 05:59:24
- Zuletzt bearbeitet 12.04.2025 10:46:40
The dissect_nwp function in epan/dissectors/packet-nwp.c in the NWP dissector in Wireshark 2.0.x before 2.0.1 mishandles the packet type, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
CVE-2015-8733
- EPSS 1.63%
- Veröffentlicht 04.01.2016 05:59:23
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ngsniffer_process_record function in wiretap/ngsniffer.c in the Sniffer file parser in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the relationships between record lengths and record header lengths, which allows remote...
CVE-2015-8732
- EPSS 1%
- Veröffentlicht 04.01.2016 05:59:22
- Zuletzt bearbeitet 12.04.2025 10:46:40
The dissect_zcl_pwr_prof_pwrprofstatersp function in epan/dissectors/packet-zbee-zcl-general.c in the ZigBee ZCL dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the Total Profile Number field, which allows remote ...
CVE-2015-8730
- EPSS 1.04%
- Veröffentlicht 04.01.2016 05:59:21
- Zuletzt bearbeitet 12.04.2025 10:46:40
epan/dissectors/packet-nbap.c in the NBAP dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the number of items, which allows remote attackers to cause a denial of service (invalid read operation and application cra...
CVE-2015-8731
- EPSS 1.04%
- Veröffentlicht 04.01.2016 05:59:21
- Zuletzt bearbeitet 12.04.2025 10:46:40
The dissct_rsl_ipaccess_msg function in epan/dissectors/packet-rsl.c in the RSL dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not reject unknown TLV types, which allows remote attackers to cause a denial of service (out-of-b...
CVE-2015-8729
- EPSS 0.89%
- Veröffentlicht 04.01.2016 05:59:20
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ascend_seek function in wiretap/ascendtext.c in the Ascend file parser in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not ensure the presence of a '\0' character at the end of a date string, which allows remote attackers to cause a...
CVE-2015-8728
- EPSS 1.05%
- Veröffentlicht 04.01.2016 05:59:19
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Mobile Identity parser in (1) epan/dissectors/packet-ansi_a.c in the ANSI A dissector and (2) epan/dissectors/packet-gsm_a_common.c in the GSM A dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 improperly uses the tvb_bcd_dig_to...
CVE-2015-8727
- EPSS 0.77%
- Veröffentlicht 04.01.2016 05:59:18
- Zuletzt bearbeitet 12.04.2025 10:46:40
The dissect_rsvp_common function in epan/dissectors/packet-rsvp.c in the RSVP dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not properly maintain request-key data, which allows remote attackers to cause a denial of service (...