CVE-2018-7325
- EPSS 0.38%
- Veröffentlicht 23.02.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:01
In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-rpki-rtr.c had an infinite loop that was addressed by validating a length field.
CVE-2018-7326
- EPSS 0.39%
- Veröffentlicht 23.02.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:01
In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-lltd.c had an infinite loop that was addressed by using a correct integer data type.
CVE-2018-7327
- EPSS 0.36%
- Veröffentlicht 23.02.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:01
In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-openflow_v6.c had an infinite loop that was addressed by validating property lengths.
CVE-2018-7328
- EPSS 0.36%
- Veröffentlicht 23.02.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:01
In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-usb.c had an infinite loop that was addressed by rejecting short frame header lengths.
CVE-2018-7329
- EPSS 0.36%
- Veröffentlicht 23.02.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:01
In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-s7comm.c had an infinite loop that was addressed by correcting off-by-one errors.
CVE-2018-6836
- EPSS 0.32%
- Veröffentlicht 08.02.2018 07:29:01
- Zuletzt bearbeitet 21.11.2024 04:11:16
The netmonrec_comment_destroy function in wiretap/netmon.c in Wireshark through 2.4.4 performs a free operation on an uninitialized memory address, which allows remote attackers to cause a denial of service (application crash) or possibly have unspec...
CVE-2018-5334
- EPSS 0.87%
- Veröffentlicht 11.01.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:36
In Wireshark 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11, the IxVeriWave file parser could crash. This was addressed in wiretap/vwr.c by correcting the signature timestamp bounds checks.
CVE-2018-5335
- EPSS 0.87%
- Veröffentlicht 11.01.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:36
In Wireshark 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11, the WCP dissector could crash. This was addressed in epan/dissectors/packet-wcp.c by validating the available buffer length.
CVE-2018-5336
- EPSS 1.01%
- Veröffentlicht 11.01.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:36
In Wireshark 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11, the JSON, XML, NTP, XMPP, and GDB dissectors could crash. This was addressed in epan/tvbparse.c by limiting the recursion depth.
CVE-2017-17997
- EPSS 0.7%
- Veröffentlicht 30.12.2017 07:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In Wireshark before 2.2.12, the MRDISC dissector misuses a NULL pointer and crashes. This was addressed in epan/dissectors/packet-mrdisc.c by validating an IPv4 address. This vulnerability is similar to CVE-2017-9343.