Vulnerability index

Browse CVEs

593 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wireshark HIGH 7.5
CVE-2017-9352

In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the Bazaar dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-bz…

Fix: after 2.2.6
Fix from $1,950 2017-06-02
Wireshark HIGH 7.5
CVE-2017-9353EPSS 14%

In Wireshark 2.2.0 to 2.2.6, the IPv6 dissector could crash. This was addressed in epan/dissectors/packet-ipv6.c by validating an IPv6 address.

Fix: after 2.2.6
Fix from $1,950 2017-06-02
Wireshark HIGH 7.5
CVE-2017-9354

In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the RGMP dissector could crash. This was addressed in epan/dissectors/packet-rgmp.c by validating an…

Fix: after 2.2.6
Fix from $1,950 2017-06-02
Wireshark HIGH 7.5
CVE-2017-7701

In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the BGP dissector could go into an infinite loop, triggered by packet injection or a malformed captu…

Patch available
Fix from $1,950 2017-04-12
Wireshark HIGH 7.5
CVE-2017-7702

In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the WBXML dissector could go into an infinite loop, triggered by packet injection or a malformed cap…

Patch available
Fix from $1,950 2017-04-12
Wireshark HIGH 7.5
CVE-2017-7703

In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the IMAP dissector could crash, triggered by packet injection or a malformed capture file. This was …

Patch available
Fix from $1,950 2017-04-12
Wireshark HIGH 7.5
CVE-2017-7704

In Wireshark 2.2.0 to 2.2.5, the DOF dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was ad…

Patch available
Fix from $1,950 2017-04-12
Wireshark HIGH 7.5
CVE-2017-7705

In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the RPC over RDMA dissector could go into an infinite loop, triggered by packet injection or a malfo…

Patch available
Fix from $1,950 2017-04-12
Wireshark HIGH 7.5
CVE-2017-7745

In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the SIGCOMP dissector could go into an infinite loop, triggered by packet injection or a malformed c…

Patch available
Fix from $1,950 2017-04-12
Wireshark HIGH 7.5
CVE-2017-7746

In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the SLSK dissector could go into an infinite loop, triggered by packet injection or a malformed capt…

Patch available
Fix from $1,950 2017-04-12
Wireshark HIGH 7.5
CVE-2017-7747

In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the PacketBB dissector could crash, triggered by packet injection or a malformed capture file. This …

Patch available
Fix from $1,950 2017-04-12
Wireshark HIGH 7.5
CVE-2017-7748

In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the WSP dissector could go into an infinite loop, triggered by packet injection or a malformed captu…

Patch available
Fix from $1,950 2017-04-12
Wireshark MEDIUM 6.5
CVE-2017-7700

In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the NetScaler file parser could go into an infinite loop, triggered by a malformed capture file. Thi…

Fix: after 2.2.5
Fix from $1,600 2017-04-12
Wireshark HIGH 7.5
CVE-2016-7957

In Wireshark 2.2.0, the Bluetooth L2CAP dissector could crash, triggered by packet injection or a malformed capture file. This was addressed in epan/…

Patch available
Fix from $1,950 2017-04-12
Wireshark HIGH 7.5
CVE-2016-7958

In Wireshark 2.2.0, the NCP dissector could crash, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/C…

Patch available
Fix from $1,950 2017-04-12
Wireshark HIGH 7.5
CVE-2017-6467

In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a Netscaler file parser infinite loop, triggered by a malformed capture file. This was addr…

Fix: after 2.2.4
Fix from $1,950 2017-03-04
Wireshark HIGH 7.5
CVE-2017-6468

In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a NetScaler file parser crash, triggered by a malformed capture file. This was addressed in…

Fix: after 2.2.4
Fix from $1,950 2017-03-04
Wireshark HIGH 7.5
CVE-2017-6469

In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is an LDSS dissector crash, triggered by packet injection or a malformed capture file. This wa…

Fix: after 2.2.4
Fix from $1,950 2017-03-04
Wireshark HIGH 7.5
CVE-2017-6470

In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is an IAX2 infinite loop, triggered by packet injection or a malformed capture file. This was …

Fix: after 2.2.4
Fix from $1,950 2017-03-04
Wireshark HIGH 7.5
CVE-2017-6471

In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a WSP infinite loop, triggered by packet injection or a malformed capture file. This was ad…

Fix: after 2.2.4
Fix from $1,950 2017-03-04
Wireshark HIGH 7.5
CVE-2017-6472

In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is an RTMPT dissector infinite loop, triggered by packet injection or a malformed capture file…

Fix: after 2.2.4
Fix from $1,950 2017-03-04
Wireshark HIGH 7.5
CVE-2017-6473

In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a K12 file parser crash, triggered by a malformed capture file. This was addressed in wiret…

Fix: after 2.2.4
Fix from $1,950 2017-03-04
Wireshark HIGH 7.5
CVE-2017-6474

In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a NetScaler file parser infinite loop, triggered by a malformed capture file. This was addr…

Fix: after 2.2.4
Fix from $1,950 2017-03-04
Wireshark HIGH 7.5
CVE-2017-6014

In Wireshark 2.2.4 and earlier, a crafted or malformed STANAG 4607 capture file will cause an infinite loop and memory exhaustion. If the packet size…

Fix: after 2.2.4
Fix from $1,950 2017-02-17
Wireshark HIGH 7.5
CVE-2017-5596

In Wireshark 2.2.0 to 2.2.3 and 2.0.0 to 2.0.9, the ASTERIX dissector could go into an infinite loop, triggered by packet injection or a malformed ca…

Patch available
Fix from $1,950 2017-01-25
Wireshark HIGH 7.5
CVE-2017-5597

In Wireshark 2.2.0 to 2.2.3 and 2.0.0 to 2.0.9, the DHCPv6 dissector could go into a large loop, triggered by packet injection or a malformed capture…

Patch available
Fix from $1,950 2017-01-25
Wireshark MEDIUM 5.9
CVE-2016-9376

In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the OpenFlow dissector could crash with memory exhaustion, triggered by network traffic or a capture …

Mitigation only
Fix from $1,600 2016-11-17
Wireshark MEDIUM 5.9
CVE-2016-9375

In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the DTN dissector could go into an infinite loop, triggered by network traffic or a capture file. Thi…

Mitigation only
Fix from $1,600 2016-11-17
Wireshark MEDIUM 5.9
CVE-2016-9374

In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the AllJoyn dissector could crash with a buffer over-read, triggered by network traffic or a capture …

Mitigation only
Fix from $1,600 2016-11-17
Wireshark MEDIUM 5.9
CVE-2016-9373

In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the DCERPC dissector could crash with a use-after-free, triggered by network traffic or a capture fil…

Mitigation only
Fix from $1,600 2016-11-17