CVE-2021-22191
- EPSS 0.45%
- Published 15.03.2021 18:15:17
- Last modified 21.11.2024 05:49:40
Improper URL handling in Wireshark 3.4.0 to 3.4.3 and 3.2.0 to 3.2.11 could allow remote code execution via via packet injection or crafted capture file.
CVE-2021-22173
- EPSS 0.95%
- Published 17.02.2021 15:15:13
- Last modified 21.11.2024 05:49:38
Memory leak in USB HID dissector in Wireshark 3.4.0 to 3.4.2 allows denial of service via packet injection or crafted capture file
CVE-2021-22174
- EPSS 0.95%
- Published 17.02.2021 15:15:13
- Last modified 21.11.2024 05:49:38
Crash in USB HID dissector in Wireshark 3.4.0 to 3.4.2 allows denial of service via packet injection or crafted capture file
CVE-2020-26422
- EPSS 0.31%
- Published 21.12.2020 18:15:15
- Last modified 21.11.2024 05:19:55
Buffer overflow in QUIC dissector in Wireshark 3.4.0 to 3.4.1 allows denial of service via packet injection or crafted capture file
CVE-2020-26418
- EPSS 0.41%
- Published 11.12.2020 19:15:12
- Last modified 21.11.2024 05:19:54
Memory leak in Kafka protocol dissector in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.
CVE-2020-26419
- EPSS 0.43%
- Published 11.12.2020 19:15:12
- Last modified 21.11.2024 05:19:54
Memory leak in the dissection engine in Wireshark 3.4.0 allows denial of service via packet injection or crafted capture file.
CVE-2020-26420
- EPSS 0.43%
- Published 11.12.2020 19:15:12
- Last modified 21.11.2024 05:19:54
Memory leak in RTPS protocol dissector in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.
CVE-2020-26421
- EPSS 0.26%
- Published 11.12.2020 19:15:12
- Last modified 21.11.2024 05:19:54
Crash in USB HID protocol dissector and possibly other dissectors in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.
CVE-2020-28030
- EPSS 1.07%
- Published 02.11.2020 21:15:30
- Last modified 21.11.2024 05:22:14
In Wireshark 3.2.0 to 3.2.7, the GQUIC dissector could crash. This was addressed in epan/dissectors/packet-gquic.c by correcting the implementation of offset advancement.
CVE-2020-25862
- EPSS 0.3%
- Published 06.10.2020 15:15:15
- Last modified 21.11.2024 05:18:55
In Wireshark 3.2.0 to 3.2.6, 3.0.0 to 3.0.13, and 2.6.0 to 2.6.20, the TCP dissector could crash. This was addressed in epan/dissectors/packet-tcp.c by changing the handling of the invalid 0xFFFF checksum.