Wireshark

Wireshark

692 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.5%
  • Veröffentlicht 30.07.2013 00:56:15
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The netmon_open function in wiretap/netmon.c in the Netmon file parser in Wireshark 1.8.x before 1.8.9 and 1.10.x before 1.10.1 does not properly allocate memory, which allows remote attackers to cause a denial of service (application crash) via a cr...

  • EPSS 0.35%
  • Veröffentlicht 30.07.2013 00:56:14
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The P1 dissector in Wireshark 1.10.x before 1.10.1 does not properly initialize a global variable, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.

Exploit
  • EPSS 32.46%
  • Veröffentlicht 09.06.2013 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The dissect_capwap_data function in epan/dissectors/packet-capwap.c in the CAPWAP dissector in Wireshark 1.6.x before 1.6.16 and 1.8.x before 1.8.8 incorrectly uses a -1 data value to represent an error condition, which allows remote attackers to cau...

  • EPSS 0.86%
  • Veröffentlicht 09.06.2013 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

epan/dissectors/packet-gmr1_bcch.c in the GMR-1 BCCH dissector in Wireshark 1.8.x before 1.8.8 does not properly initialize memory, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.

  • EPSS 1.29%
  • Veröffentlicht 09.06.2013 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Buffer overflow in the dissect_iphc_crtp_fh function in epan/dissectors/packet-ppp.c in the PPP dissector in Wireshark 1.8.x before 1.8.8 allows remote attackers to cause a denial of service (application crash) via a crafted packet.

  • EPSS 1.54%
  • Veröffentlicht 09.06.2013 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Array index error in the NBAP dissector in Wireshark 1.8.x before 1.8.8 allows remote attackers to cause a denial of service (application crash) via a crafted packet, related to nbap.cnf and packet-nbap.c.

  • EPSS 1.87%
  • Veröffentlicht 09.06.2013 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

epan/dissectors/packet-rdp.c in the RDP dissector in Wireshark 1.8.x before 1.8.8 does not validate return values during checks for data availability, which allows remote attackers to cause a denial of service (application crash) via a crafted packet...

  • EPSS 1.21%
  • Veröffentlicht 09.06.2013 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The dissect_schedule_message function in epan/dissectors/packet-gsm_cbch.c in the GSM CBCH dissector in Wireshark 1.8.x before 1.8.8 allows remote attackers to cause a denial of service (infinite loop and application hang) via a crafted packet.

  • EPSS 1.25%
  • Veröffentlicht 09.06.2013 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The dissect_r3_upstreamcommand_queryconfig function in epan/dissectors/packet-assa_r3.c in the Assa Abloy R3 dissector in Wireshark 1.8.x before 1.8.8 does not properly handle a zero-length item, which allows remote attackers to cause a denial of ser...

  • EPSS 0.96%
  • Veröffentlicht 09.06.2013 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The http_payload_subdissector function in epan/dissectors/packet-http.c in the HTTP dissector in Wireshark 1.6.x before 1.6.16 and 1.8.x before 1.8.8 does not properly determine when to use a recursive approach, which allows remote attackers to cause...