CVE-2015-8725
- EPSS 0.74%
- Veröffentlicht 04.01.2016 05:59:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
The dissect_diameter_base_framed_ipv6_prefix function in epan/dissectors/packet-diameter.c in the DIAMETER dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the IPv6 prefix length, which allows remote attackers to c...
CVE-2015-8724
- EPSS 0.77%
- Veröffentlicht 04.01.2016 05:59:14
- Zuletzt bearbeitet 12.04.2025 10:46:40
The AirPDcapDecryptWPABroadcastKey function in epan/crypt/airpdcap.c in the 802.11 dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not verify the WPA broadcast key length, which allows remote attackers to cause a denial of ser...
CVE-2015-8723
- EPSS 1.26%
- Veröffentlicht 04.01.2016 05:59:13
- Zuletzt bearbeitet 12.04.2025 10:46:40
The AirPDcapPacketProcess function in epan/crypt/airpdcap.c in the 802.11 dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the relationship between the total length and the capture length, which allows remote attac...
CVE-2015-8722
- EPSS 0.08%
- Veröffentlicht 04.01.2016 05:59:12
- Zuletzt bearbeitet 12.04.2025 10:46:40
epan/dissectors/packet-sctp.c in the SCTP dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the frame pointer, which allows remote attackers to cause a denial of service (NULL pointer dereference and application cra...
CVE-2015-8721
- EPSS 0.12%
- Veröffentlicht 04.01.2016 05:59:11
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in the tvb_uncompress function in epan/tvbuff_zlib.c in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 allows remote attackers to cause a denial of service (application crash) via a crafted packet with zlib compression.
CVE-2015-8720
- EPSS 0.09%
- Veröffentlicht 04.01.2016 05:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
The dissect_ber_GeneralizedTime function in epan/dissectors/packet-ber.c in the BER dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 improperly checks an sscanf return value, which allows remote attackers to cause a denial of servic...
CVE-2015-8719
- EPSS 0.08%
- Veröffentlicht 04.01.2016 05:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The dissect_dns_answer function in epan/dissectors/packet-dns.c in the DNS dissector in Wireshark 1.12.x before 1.12.9 mishandles the EDNS0 Client Subnet option, which allows remote attackers to cause a denial of service (application crash) via a cra...
CVE-2015-8718
- EPSS 0.09%
- Veröffentlicht 04.01.2016 05:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Double free vulnerability in epan/dissectors/packet-nlm.c in the NLM dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1, when the "Match MSG/RES packets for async NLM" option is enabled, allows remote attackers to cause a denial of se...
CVE-2015-8717
- EPSS 0.08%
- Veröffentlicht 04.01.2016 05:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
The dissect_sdp function in epan/dissectors/packet-sdp.c in the SDP dissector in Wireshark 1.12.x before 1.12.9 does not prevent use of a negative media count, which allows remote attackers to cause a denial of service (application crash) via a craft...
CVE-2015-8716
- EPSS 0.08%
- Veröffentlicht 04.01.2016 05:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The init_t38_info_conv function in epan/dissectors/packet-t38.c in the T.38 dissector in Wireshark 1.12.x before 1.12.9 does not ensure that a conversation exists, which allows remote attackers to cause a denial of service (application crash) via a c...