- EPSS 3.26%
- Veröffentlicht 25.05.2013 03:18:16
- Zuletzt bearbeitet 11.04.2025 00:51:21
The dissect_ccp_bsdcomp_opt function in epan/dissectors/packet-ppp.c in the PPP CCP dissector in Wireshark 1.8.x before 1.8.7 does not terminate a bit-field list, which allows remote attackers to cause a denial of service (application crash) via a ma...
- EPSS 5.04%
- Veröffentlicht 25.05.2013 03:18:16
- Zuletzt bearbeitet 11.04.2025 00:51:21
epan/dissectors/packet-dcp-etsi.c in the DCP ETSI dissector in Wireshark 1.8.x before 1.8.7 uses incorrect integer data types, which allows remote attackers to cause a denial of service (integer overflow, and heap memory corruption or NULL pointer de...
- EPSS 3.45%
- Veröffentlicht 25.05.2013 03:18:16
- Zuletzt bearbeitet 11.04.2025 00:51:21
The dissect_dsmcc_un_download function in epan/dissectors/packet-mpeg-dsmcc.c in the MPEG DSM-CC dissector in Wireshark 1.8.x before 1.8.7 uses an incorrect format string, which allows remote attackers to cause a denial of service (application crash)...
CVE-2013-3561
- EPSS 1.52%
- Veröffentlicht 25.05.2013 03:18:16
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple integer overflows in Wireshark 1.8.x before 1.8.7 allow remote attackers to cause a denial of service (loop or application crash) via a malformed packet, related to a crash of the Websocket dissector, an infinite loop in the MySQL dissector,...
- EPSS 3.44%
- Veröffentlicht 25.05.2013 03:18:16
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple integer signedness errors in the tvb_unmasked function in epan/dissectors/packet-websocket.c in the Websocket dissector in Wireshark 1.8.x before 1.8.7 allow remote attackers to cause a denial of service (application crash) via a malformed p...
- EPSS 3.4%
- Veröffentlicht 25.05.2013 03:18:15
- Zuletzt bearbeitet 11.04.2025 00:51:21
epan/dissectors/packet-gtpv2.c in the GTPv2 dissector in Wireshark 1.8.x before 1.8.7 calls incorrect functions in certain contexts related to ciphers, which allows remote attackers to cause a denial of service (application crash) via a malformed pac...
- EPSS 1.54%
- Veröffentlicht 25.05.2013 03:18:15
- Zuletzt bearbeitet 11.04.2025 00:51:21
The fragment_add_seq_common function in epan/reassemble.c in the ASN.1 BER dissector in Wireshark before r48943 has an incorrect pointer dereference during a comparison, which allows remote attackers to cause a denial of service (application crash) v...
CVE-2013-1675
- EPSS 4.74%
- Veröffentlicht 16.05.2013 11:45:30
- Zuletzt bearbeitet 22.10.2025 01:15:48
Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 do not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoomEvent::mNewScale funct...
CVE-2013-1915
- EPSS 4.85%
- Veröffentlicht 25.04.2013 23:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
ModSecurity before 2.7.3 allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a denial of service (CPU and memory consumption) via an XML external entity declaration in conjunction with an entity reference...
CVE-2013-0800
- EPSS 2.8%
- Veröffentlicht 03.04.2013 11:56:21
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer signedness error in the pixman_fill_sse2 function in pixman-sse2.c in Pixman, as distributed with Cairo and used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, Se...