Skip to main content

Vendor archive

wireshark CVEs

Beta · best-effort

748 CVEs tagged to vendor wireshark20 Critical, 222 High, 441 Medium, 65 Low, 0 Unrated.

CVE-2019-10897

Published Apr 9, 2019

In Wireshark 3.0.0, the IEEE 802.11 dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-ieee80211.c by detecting cases in which the bit offset d…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-9214

Published Feb 28, 2019

In Wireshark 2.4.0 to 2.4.12 and 2.6.0 to 2.6.6, the RPCAP dissector could crash. This was addressed in epan/dissectors/packet-rpcap.c by avoiding an attempted dereference of a NU…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-9208

Published Feb 28, 2019

In Wireshark 2.4.0 to 2.4.12 and 2.6.0 to 2.6.6, the TCAP dissector could crash. This was addressed in epan/dissectors/asn1/tcap/tcap.cnf by avoiding NULL pointer dereferences.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-5721

Published Jan 8, 2019

In Wireshark 2.4.0 to 2.4.11, the ENIP dissector could crash. This was addressed in epan/dissectors/packet-enip.c by changing the memory-management approach so that a use-after-fr…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-5719

Published Jan 8, 2019

In Wireshark 2.6.0 to 2.6.5 and 2.4.0 to 2.4.11, the ISAKMP dissector could crash. This was addressed in epan/dissectors/packet-isakmp.c by properly handling the case of a missing…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-5718

Published Jan 8, 2019

In Wireshark 2.6.0 to 2.6.5 and 2.4.0 to 2.4.11, the RTSE dissector and other ASN.1 dissectors could crash. This was addressed in epan/charsets.c by adding a get_t61_string length…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-5717

Published Jan 8, 2019

In Wireshark 2.6.0 to 2.6.5 and 2.4.0 to 2.4.11, the P_MUL dissector could crash. This was addressed in epan/dissectors/packet-p_mul.c by rejecting the invalid sequence number of…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-19625

Published Nov 29, 2018

In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the dissection engine could crash. This was addressed in epan/tvbuff_composite.c by preventing a heap-based buffer over-read.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-19624

Published Nov 29, 2018

In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the PVFS dissector could crash. This was addressed in epan/dissectors/packet-pvfs2.c by preventing a NULL pointer dereference.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-19623

Published Nov 29, 2018

In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the LBMPDM dissector could crash. In addition, a remote attacker could write arbitrary data to any memory locations before the pac…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-19622

Published Nov 29, 2018

In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the MMSE dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-mmse.c by preventing length overfl…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 176-200 of 748 CVEsPage 8 of 30