Wireshark

Wireshark

680 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.39%
  • Published 01.05.2016 01:59:01
  • Last modified 12.04.2025 10:46:40

wiretap/vwr.c in the Ixia IxVeriWave file parser in Wireshark 2.x before 2.0.2 incorrectly increases a certain octet count, which allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) via a crafted fi...

  • EPSS 0.65%
  • Published 25.04.2016 10:59:10
  • Last modified 12.04.2025 10:46:40

Stack-based buffer overflow in epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 1.12.x before 1.12.11 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a long st...

  • EPSS 0.16%
  • Published 25.04.2016 10:59:09
  • Last modified 12.04.2025 10:46:40

Integer signedness error in epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before 2.0.3 allows remote attackers to cause a denial of service (integer overflow and application crash) via a crafted packet that triggers an une...

  • EPSS 0.22%
  • Published 25.04.2016 10:59:08
  • Last modified 12.04.2025 10:46:40

epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before 2.0.3 does not ensure that data is available before array allocation, which allows remote attackers to cause a denial of service (application crash) via a crafted packet...

  • EPSS 0.23%
  • Published 25.04.2016 10:59:07
  • Last modified 12.04.2025 10:46:40

epan/dissectors/packet-gsm_cbch.c in the GSM CBCH dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 uses the wrong variable to index an array, which allows remote attackers to cause a denial of service (out-of-bounds access and appl...

  • EPSS 0.37%
  • Published 25.04.2016 10:59:06
  • Last modified 12.04.2025 10:46:40

epan/dissectors/packet-iax2.c in the IAX2 dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (infinite loop) via a crafted packet.

  • EPSS 0.36%
  • Published 25.04.2016 10:59:05
  • Last modified 12.04.2025 10:46:40

epan/dissectors/packet-pktc.c in the PKTC dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 misparses timestamp fields, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a craf...

  • EPSS 0.23%
  • Published 25.04.2016 10:59:04
  • Last modified 12.04.2025 10:46:40

epan/dissectors/packet-pktc.c in the PKTC dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not verify BER identifiers, which allows remote attackers to cause a denial of service (out-of-bounds write and application crash) via ...

  • EPSS 0.36%
  • Published 25.04.2016 10:59:03
  • Last modified 12.04.2025 10:46:40

The IEEE 802.11 dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not properly restrict element lists, which allows remote attackers to cause a denial of service (deep recursion and application crash) via a crafted packet, rela...

Exploit
  • EPSS 0.22%
  • Published 25.04.2016 10:59:02
  • Last modified 12.04.2025 10:46:40

epan/reassemble.c in TShark in Wireshark 2.0.x before 2.0.3 relies on incorrect special-case handling of truncated Tvb data structures, which allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted pa...