CVE-2018-7333
- EPSS 0.36%
- Published 23.02.2018 22:29:01
- Last modified 21.11.2024 04:12:02
In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-rpcrdma.c had an infinite loop that was addressed by validating a chunk size.
CVE-2018-7334
- EPSS 1.01%
- Published 23.02.2018 22:29:01
- Last modified 21.11.2024 04:12:02
In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, the UMTS MAC dissector could crash. This was addressed in epan/dissectors/packet-umts_mac.c by rejecting a certain reserved value.
CVE-2018-7335
- EPSS 1.01%
- Published 23.02.2018 22:29:01
- Last modified 21.11.2024 04:12:02
In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, the IEEE 802.11 dissector could crash. This was addressed in epan/crypt/airpdcap.c by rejecting lengths that are too small.
CVE-2018-7336
- EPSS 1.01%
- Published 23.02.2018 22:29:01
- Last modified 21.11.2024 04:12:02
In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, the FCP protocol dissector could crash. This was addressed in epan/dissectors/packet-fcp.c by checking for a NULL pointer.
CVE-2018-7337
- EPSS 0.7%
- Published 23.02.2018 22:29:01
- Last modified 21.11.2024 04:12:03
In Wireshark 2.4.0 to 2.4.4, the DOCSIS protocol dissector could crash. This was addressed in plugins/docsis/packet-docsis.c by removing the recursive algorithm that had been used for concatenated PDUs.
CVE-2018-7417
- EPSS 0.4%
- Published 23.02.2018 22:29:01
- Last modified 21.11.2024 04:12:05
In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the IPMI dissector could crash. This was addressed in epan/dissectors/packet-ipmi-picmg.c by adding support for crafted packets that lack an IPMI header.
CVE-2018-7418
- EPSS 1.01%
- Published 23.02.2018 22:29:01
- Last modified 21.11.2024 04:12:05
In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the SIGCOMP dissector could crash. This was addressed in epan/dissectors/packet-sigcomp.c by correcting the extraction of the length value.
CVE-2018-7419
- EPSS 2.02%
- Published 23.02.2018 22:29:01
- Last modified 21.11.2024 04:12:06
In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the NBAP dissector could crash. This was addressed in epan/dissectors/asn1/nbap/nbap.cnf by ensuring DCH ID initialization.
CVE-2018-7420
- EPSS 2.02%
- Published 23.02.2018 22:29:01
- Last modified 21.11.2024 04:12:06
In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the pcapng file parser could crash. This was addressed in wiretap/pcapng.c by adding a block-size check for sysdig event blocks.
CVE-2018-7421
- EPSS 0.43%
- Published 23.02.2018 22:29:01
- Last modified 21.11.2024 04:12:06
In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the DMP dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-dmp.c by correctly supporting a bounded number of Security Categories for a DMP Security Classification.