Wireshark

Wireshark

685 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.38%
  • Veröffentlicht 23.02.2018 22:29:00
  • Zuletzt bearbeitet 21.11.2024 04:12:01

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-rpki-rtr.c had an infinite loop that was addressed by validating a length field.

Exploit
  • EPSS 0.39%
  • Veröffentlicht 23.02.2018 22:29:00
  • Zuletzt bearbeitet 21.11.2024 04:12:01

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-lltd.c had an infinite loop that was addressed by using a correct integer data type.

Exploit
  • EPSS 0.36%
  • Veröffentlicht 23.02.2018 22:29:00
  • Zuletzt bearbeitet 21.11.2024 04:12:01

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-openflow_v6.c had an infinite loop that was addressed by validating property lengths.

  • EPSS 0.36%
  • Veröffentlicht 23.02.2018 22:29:00
  • Zuletzt bearbeitet 21.11.2024 04:12:01

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-usb.c had an infinite loop that was addressed by rejecting short frame header lengths.

  • EPSS 0.36%
  • Veröffentlicht 23.02.2018 22:29:00
  • Zuletzt bearbeitet 21.11.2024 04:12:01

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-s7comm.c had an infinite loop that was addressed by correcting off-by-one errors.

Exploit
  • EPSS 0.32%
  • Veröffentlicht 08.02.2018 07:29:01
  • Zuletzt bearbeitet 21.11.2024 04:11:16

The netmonrec_comment_destroy function in wiretap/netmon.c in Wireshark through 2.4.4 performs a free operation on an uninitialized memory address, which allows remote attackers to cause a denial of service (application crash) or possibly have unspec...

  • EPSS 0.87%
  • Veröffentlicht 11.01.2018 21:29:00
  • Zuletzt bearbeitet 21.11.2024 04:08:36

In Wireshark 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11, the IxVeriWave file parser could crash. This was addressed in wiretap/vwr.c by correcting the signature timestamp bounds checks.

  • EPSS 0.87%
  • Veröffentlicht 11.01.2018 21:29:00
  • Zuletzt bearbeitet 21.11.2024 04:08:36

In Wireshark 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11, the WCP dissector could crash. This was addressed in epan/dissectors/packet-wcp.c by validating the available buffer length.

  • EPSS 1.01%
  • Veröffentlicht 11.01.2018 21:29:00
  • Zuletzt bearbeitet 21.11.2024 04:08:36

In Wireshark 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11, the JSON, XML, NTP, XMPP, and GDB dissectors could crash. This was addressed in epan/tvbparse.c by limiting the recursion depth.

  • EPSS 0.7%
  • Veröffentlicht 30.12.2017 07:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Wireshark before 2.2.12, the MRDISC dissector misuses a NULL pointer and crashes. This was addressed in epan/dissectors/packet-mrdisc.c by validating an IPv4 address. This vulnerability is similar to CVE-2017-9343.