Wireshark

Wireshark

685 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.36%
  • Veröffentlicht 04.04.2018 07:29:01
  • Zuletzt bearbeitet 21.11.2024 04:15:16

In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, epan/dissectors/packet-h223.c has a memory leak.

Exploit
  • EPSS 0.69%
  • Veröffentlicht 04.04.2018 07:29:01
  • Zuletzt bearbeitet 21.11.2024 04:15:16

In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, epan/dissectors/packet-pcp.c has a memory leak.

Exploit
  • EPSS 0.36%
  • Veröffentlicht 04.04.2018 07:29:01
  • Zuletzt bearbeitet 21.11.2024 04:15:16

In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ui/failure_message.c has a memory leak.

Exploit
  • EPSS 0.96%
  • Veröffentlicht 04.04.2018 07:29:00
  • Zuletzt bearbeitet 21.11.2024 04:15:13

In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the LWAPP dissector could crash. This was addressed in epan/dissectors/packet-lwapp.c by limiting the encapsulation levels to restrict the recursion depth.

Exploit
  • EPSS 0.36%
  • Veröffentlicht 04.04.2018 07:29:00
  • Zuletzt bearbeitet 21.11.2024 04:15:13

In Wireshark 2.4.0 to 2.4.5, the CQL dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-cql.c by checking for a nonzero number of columns.

Exploit
  • EPSS 0.69%
  • Veröffentlicht 04.04.2018 07:29:00
  • Zuletzt bearbeitet 21.11.2024 04:15:13

In Wireshark 2.4.0 to 2.4.5, the TCP dissector could crash. This was addressed in epan/dissectors/packet-tcp.c by preserving valid data sources.

Exploit
  • EPSS 0.69%
  • Veröffentlicht 04.04.2018 07:29:00
  • Zuletzt bearbeitet 21.11.2024 04:15:14

In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the MP4 dissector could crash. This was addressed in epan/dissectors/file-mp4.c by restricting the box recursion depth.

Exploit
  • EPSS 0.98%
  • Veröffentlicht 04.04.2018 07:29:00
  • Zuletzt bearbeitet 21.11.2024 04:15:14

In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the IEEE 802.15.4 dissector could crash. This was addressed in epan/dissectors/packet-ieee802154.c by ensuring that an allocation step occurs.

Exploit
  • EPSS 0.93%
  • Veröffentlicht 04.04.2018 07:29:00
  • Zuletzt bearbeitet 21.11.2024 04:15:14

In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the NBAP dissector could crash with a large loop that ends with a heap-based buffer overflow. This was addressed in epan/dissectors/packet-nbap.c by prohibiting the self-linking of DCH-IDs.

Exploit
  • EPSS 0.92%
  • Veröffentlicht 04.04.2018 07:29:00
  • Zuletzt bearbeitet 21.11.2024 04:15:14

In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the VLAN dissector could crash. This was addressed in epan/dissectors/packet-vlan.c by limiting VLAN tag nesting to restrict the recursion depth.