CVE-2015-8739
- EPSS 0.6%
- Veröffentlicht 04.01.2016 05:59:29
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ipmi_fmt_udpport function in epan/dissectors/packet-ipmi.c in the IPMI dissector in Wireshark 2.0.x before 2.0.1 improperly attempts to access a packet scope, which allows remote attackers to cause a denial of service (assertion failure and appli...
CVE-2015-8737
- EPSS 0.17%
- Veröffentlicht 04.01.2016 05:59:28
- Zuletzt bearbeitet 12.04.2025 10:46:40
The mp2t_open function in wiretap/mp2t.c in the MP2T file parser in Wireshark 2.0.x before 2.0.1 does not validate the bit rate, which allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted fil...
CVE-2015-8736
- EPSS 0.69%
- Veröffentlicht 04.01.2016 05:59:26
- Zuletzt bearbeitet 12.04.2025 10:46:40
The mp2t_find_next_pcr function in wiretap/mp2t.c in the MP2T file parser in Wireshark 2.0.x before 2.0.1 does not reserve memory for a trailer, which allows remote attackers to cause a denial of service (stack-based buffer overflow and application c...
CVE-2015-8735
- EPSS 0.6%
- Veröffentlicht 04.01.2016 05:59:25
- Zuletzt bearbeitet 12.04.2025 10:46:40
The get_value function in epan/dissectors/packet-btatt.c in the Bluetooth Attribute (aka BT ATT) dissector in Wireshark 2.0.x before 2.0.1 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (invalid write ...
CVE-2015-8734
- EPSS 0.09%
- Veröffentlicht 04.01.2016 05:59:24
- Zuletzt bearbeitet 12.04.2025 10:46:40
The dissect_nwp function in epan/dissectors/packet-nwp.c in the NWP dissector in Wireshark 2.0.x before 2.0.1 mishandles the packet type, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
CVE-2015-8733
- EPSS 1.63%
- Veröffentlicht 04.01.2016 05:59:23
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ngsniffer_process_record function in wiretap/ngsniffer.c in the Sniffer file parser in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the relationships between record lengths and record header lengths, which allows remote...
CVE-2015-8732
- EPSS 1%
- Veröffentlicht 04.01.2016 05:59:22
- Zuletzt bearbeitet 12.04.2025 10:46:40
The dissect_zcl_pwr_prof_pwrprofstatersp function in epan/dissectors/packet-zbee-zcl-general.c in the ZigBee ZCL dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the Total Profile Number field, which allows remote ...
CVE-2015-8730
- EPSS 1.04%
- Veröffentlicht 04.01.2016 05:59:21
- Zuletzt bearbeitet 12.04.2025 10:46:40
epan/dissectors/packet-nbap.c in the NBAP dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the number of items, which allows remote attackers to cause a denial of service (invalid read operation and application cra...
CVE-2015-8731
- EPSS 1.04%
- Veröffentlicht 04.01.2016 05:59:21
- Zuletzt bearbeitet 12.04.2025 10:46:40
The dissct_rsl_ipaccess_msg function in epan/dissectors/packet-rsl.c in the RSL dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not reject unknown TLV types, which allows remote attackers to cause a denial of service (out-of-b...
CVE-2015-8729
- EPSS 0.89%
- Veröffentlicht 04.01.2016 05:59:20
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ascend_seek function in wiretap/ascendtext.c in the Ascend file parser in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not ensure the presence of a '\0' character at the end of a date string, which allows remote attackers to cause a...