Vulnerability index

Browse CVEs

593 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wireshark MEDIUM 5.9
CVE-2016-9372

In Wireshark 2.2.0 to 2.2.1, the Profinet I/O dissector could loop excessively, triggered by network traffic or a capture file. This was addressed in…

No fix yet
Fix from $1,600 2016-11-17
Wireshark MEDIUM 5.9
CVE-2016-7178

epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 2.x before 2.0.6 does not ensure that memory is allocated for certain data str…

Patch available
Fix from $1,600 2016-09-09
Wireshark MEDIUM 5.9
CVE-2016-7176

epan/dissectors/packet-h225.c in the H.225 dissector in Wireshark 2.x before 2.0.6 calls snprintf with one of its input buffers as the output buffer,…

Patch available
Fix from $1,600 2016-09-09
Wireshark MEDIUM 5.9
CVE-2016-7175

epan/dissectors/packet-qnet6.c in the QNX6 QNET dissector in Wireshark 2.x before 2.0.6 mishandles MAC address data, which allows remote attackers to…

Patch available
Fix from $1,600 2016-09-09
Wireshark MEDIUM 5.9
CVE-2016-5359

epan/dissectors/packet-wbxml.c in the WBXML dissector in Wireshark 1.12.x before 1.12.12 mishandles offsets, which allows remote attackers to cause a…

Patch available
Fix from $1,600 2016-08-07
Wireshark MEDIUM 5.9
CVE-2016-5358

epan/dissectors/packet-pktap.c in the Ethernet dissector in Wireshark 2.x before 2.0.4 mishandles the packet-header data type, which allows remote at…

Patch available
Fix from $1,600 2016-08-07
Wireshark MEDIUM 5.9
CVE-2016-5357

wiretap/netscreen.c in the NetScreen file parser in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles sscanf unsigned-integer processin…

Patch available
Fix from $1,600 2016-08-07
Wireshark MEDIUM 5.9
CVE-2016-5356

wiretap/cosine.c in the CoSine file parser in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles sscanf unsigned-integer processing, whi…

Patch available
Fix from $1,600 2016-08-07
Wireshark MEDIUM 5.9
CVE-2016-5355

wiretap/toshiba.c in the Toshiba file parser in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles sscanf unsigned-integer processing, w…

Patch available
Fix from $1,600 2016-08-07
Wireshark MEDIUM 5.9
CVE-2016-5354

The USB subsystem in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles class types, which allows remote attackers to cause a denial of …

Patch available
Fix from $1,600 2016-08-07
Wireshark MEDIUM 5.9
CVE-2016-5353

epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles the reserved C/T value, …

Patch available
Fix from $1,600 2016-08-07
Wireshark MEDIUM 5.9
CVE-2016-5352

epan/crypt/airpdcap.c in the IEEE 802.11 dissector in Wireshark 2.x before 2.0.4 mishandles certain length values, which allows remote attackers to c…

Patch available
Fix from $1,600 2016-08-07
Wireshark MEDIUM 5.9
CVE-2016-5351

epan/crypt/airpdcap.c in the IEEE 802.11 dissector in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles the lack of an EAPOL_RSN_KEY, w…

Patch available
Fix from $1,600 2016-08-07
Wireshark HIGH 7.5
CVE-2016-5350

epan/dissectors/packet-dcerpc-spoolss.c in the SPOOLS component in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles unexpected offsets…

Patch available
Fix from $1,950 2016-08-07
Wireshark MEDIUM 5.9
CVE-2016-6513

epan/dissectors/packet-wbxml.c in the WBXML dissector in Wireshark 2.x before 2.0.5 does not restrict the recursion depth, which allows remote attack…

Mitigation only
Fix from $1,600 2016-08-06
Wireshark MEDIUM 5.9
CVE-2016-6512EPSS 8%

epan/dissectors/packet-wap.c in Wireshark 2.x before 2.0.5 omits an overflow check in the tvb_get_guintvar function, which allows remote attackers to…

No fix yet
Fix from $1,600 2016-08-06
Wireshark MEDIUM 5.9
CVE-2016-6511

epan/proto.c in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause a denial of service (OpenFlow dissector large l…

Mitigation only
Fix from $1,600 2016-08-06
Wireshark MEDIUM 5.9
CVE-2016-6510

Off-by-one error in epan/dissectors/packet-rlc.c in the RLC dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers…

Mitigation only
Fix from $1,600 2016-08-06
Wireshark MEDIUM 5.9
CVE-2016-6509

epan/dissectors/packet-ldss.c in the LDSS dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 mishandles conversations, which allows re…

Patch available
Fix from $1,600 2016-08-06
Wireshark MEDIUM 5.9
CVE-2016-6508

epan/dissectors/packet-rlc.c in the RLC dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 uses an incorrect integer data type, which …

Mitigation only
Fix from $1,600 2016-08-06
Wireshark MEDIUM 5.9
CVE-2016-6507

epan/dissectors/packet-mmse.c in the MMSE dissector in Wireshark 1.12.x before 1.12.13 allows remote attackers to cause a denial of service (infinite…

Mitigation only
Fix from $1,600 2016-08-06
Wireshark MEDIUM 5.9
CVE-2016-6506

epan/dissectors/packet-wsp.c in the WSP dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause a denial o…

Patch available
Fix from $1,600 2016-08-06
Wireshark MEDIUM 5.9
CVE-2016-6505EPSS 8%

epan/dissectors/packet-packetbb.c in the PacketBB dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause …

No fix yet
Fix from $1,600 2016-08-06
Wireshark MEDIUM 5.9
CVE-2016-6504EPSS 7%

epan/dissectors/packet-ncp2222.inc in the NDS dissector in Wireshark 1.12.x before 1.12.13 does not properly maintain a ptvc data structure, which al…

No fix yet
Fix from $1,600 2016-08-06
Wireshark MEDIUM 5.9
CVE-2016-6503EPSS 6%

The CORBA IDL dissectors in Wireshark 2.x before 2.0.5 on 64-bit Windows platforms do not properly interact with Visual C++ compiler options, which a…

No fix yet
Fix from $1,600 2016-08-06
Wireshark MEDIUM 5.9
CVE-2016-4421

epan/dissectors/packet-ber.c in the ASN.1 BER dissector in Wireshark 1.12.x before 1.12.10 and 2.x before 2.0.2 allows remote attackers to cause a de…

Mitigation only
Fix from $1,600 2016-05-01
Wireshark MEDIUM 5.9
CVE-2016-4420

The NFS dissector in Wireshark 2.x before 2.0.2 allows remote attackers to cause a denial of service (application crash) via a crafted packet.

Mitigation only
Fix from $1,600 2016-05-01
Wireshark MEDIUM 5.9
CVE-2016-4419

epan/dissectors/packet-spice.c in the SPICE dissector in Wireshark 2.x before 2.0.2 mishandles capability data, which allows remote attackers to caus…

Mitigation only
Fix from $1,600 2016-05-01
Wireshark MEDIUM 5.9
CVE-2016-4418

epan/dissectors/packet-ber.c in the ASN.1 BER dissector in Wireshark 1.12.x before 1.12.10 and 2.x before 2.0.2 allows remote attackers to cause a de…

Mitigation only
Fix from $1,600 2016-05-01
Wireshark MEDIUM 5.9
CVE-2016-4417

Off-by-one error in epan/dissectors/packet-gsm_abis_oml.c in the GSM A-bis OML dissector in Wireshark 1.12.x before 1.12.10 and 2.x before 2.0.2 allo…

Mitigation only
Fix from $1,600 2016-05-01