Vulnerability index

Browse CVEs

593 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wireshark MEDIUM 5.9
CVE-2016-4416

epan/dissectors/packet-ieee80211.c in the IEEE 802.11 dissector in Wireshark 2.x before 2.0.2 mishandles the Grouping subfield, which allows remote a…

Mitigation only
Fix from $1,600 2016-05-01
Wireshark MEDIUM 5.9
CVE-2016-4415

wiretap/vwr.c in the Ixia IxVeriWave file parser in Wireshark 2.x before 2.0.2 incorrectly increases a certain octet count, which allows remote attac…

No fix yet
Fix from $1,600 2016-05-01
Wireshark MEDIUM 5.9
CVE-2016-4084

Integer signedness error in epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before 2.0.3 allows remote attackers to cause a…

Mitigation only
Fix from $1,600 2016-04-25
Wireshark MEDIUM 5.9
CVE-2016-4083

epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before 2.0.3 does not ensure that data is available before array allocation…

Mitigation only
Fix from $1,600 2016-04-25
Wireshark MEDIUM 5.9
CVE-2016-4082

epan/dissectors/packet-gsm_cbch.c in the GSM CBCH dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 uses the wrong variable to inde…

Patch available
Fix from $1,600 2016-04-25
Wireshark MEDIUM 5.9
CVE-2016-4081

epan/dissectors/packet-iax2.c in the IAX2 dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 uses an incorrect integer data type, wh…

Mitigation only
Fix from $1,600 2016-04-25
Wireshark MEDIUM 5.9
CVE-2016-4080

epan/dissectors/packet-pktc.c in the PKTC dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 misparses timestamp fields, which allow…

Mitigation only
Fix from $1,600 2016-04-25
Wireshark MEDIUM 5.9
CVE-2016-4078

The IEEE 802.11 dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not properly restrict element lists, which allows remote att…

Mitigation only
Fix from $1,600 2016-04-25
Wireshark MEDIUM 5.9
CVE-2016-4077

epan/reassemble.c in TShark in Wireshark 2.0.x before 2.0.3 relies on incorrect special-case handling of truncated Tvb data structures, which allows …

No fix yet
Fix from $1,600 2016-04-25
Wireshark MEDIUM 5.9
CVE-2016-4076

epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 2.0.x before 2.0.3 does not properly initialize memory for search patterns, whic…

Mitigation only
Fix from $1,600 2016-04-25
Wireshark MEDIUM 5.9
CVE-2016-4006

epan/proto.c in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not limit the protocol-tree depth, which allows remote attackers to cause…

Mitigation only
Fix from $1,600 2016-04-25
Wireshark MEDIUM 5.9
CVE-2016-2532

The dissect_llrp_parameters function in epan/dissectors/packet-llrp.c in the LLRP dissector in Wireshark 1.12.x before 1.12.10 and 2.0.x before 2.0.2…

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.9
CVE-2016-2531

Off-by-one error in epan/dissectors/packet-rsl.c in the RSL dissector in Wireshark 1.12.x before 1.12.10 and 2.0.x before 2.0.2 allows remote attacke…

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.9
CVE-2016-2530

The dissct_rsl_ipaccess_msg function in epan/dissectors/packet-rsl.c in the RSL dissector in Wireshark 1.12.x before 1.12.10 and 2.0.x before 2.0.2 m…

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.5
CVE-2016-2529

The iseries_check_file_type function in wiretap/iseries.c in the iSeries file parser in Wireshark 2.0.x before 2.0.2 does not consider that a line ma…

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.9
CVE-2016-2528

The dissect_nhdr_extopt function in epan/dissectors/packet-lbmc.c in the LBMC dissector in Wireshark 2.0.x before 2.0.2 does not validate length valu…

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.5
CVE-2016-2527

wiretap/nettrace_3gpp_32_423.c in the 3GPP TS 32.423 Trace file parser in Wireshark 2.0.x before 2.0.2 does not ensure that a '\0' character is prese…

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.9
CVE-2016-2526

epan/dissectors/packet-hiqnet.c in the HiQnet dissector in Wireshark 2.0.x before 2.0.2 does not validate the data type, which allows remote attacker…

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.9
CVE-2016-2525

epan/dissectors/packet-http2.c in the HTTP/2 dissector in Wireshark 2.0.x before 2.0.2 does not limit the amount of header data, which allows remote …

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.9
CVE-2016-2524

epan/dissectors/packet-x509af.c in the X.509AF dissector in Wireshark 2.0.x before 2.0.2 mishandles the algorithm ID, which allows remote attackers t…

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.9
CVE-2016-2523

The dnp3_al_process_object function in epan/dissectors/packet-dnp.c in the DNP3 dissector in Wireshark 1.12.x before 1.12.10 and 2.0.x before 2.0.2 a…

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.9
CVE-2016-2522

The dissect_ber_constrained_bitstring function in epan/dissectors/packet-ber.c in the ASN.1 BER dissector in Wireshark 2.0.x before 2.0.2 does not ve…

No fix yet
Fix from $1,600 2016-02-28
Wireshark HIGH 7.8
CVE-2016-2521

Untrusted search path vulnerability in the WiresharkApplication class in ui/qt/wireshark_application.cpp in Wireshark 1.12.x before 1.12.10 and 2.0.x…

Mitigation only
Fix from $1,950 2016-02-28
Wireshark MEDIUM 5.5
CVE-2015-8742

The dissect_CPMSetBindings function in epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before 2.0.1 does not validate the c…

Mitigation only
Fix from $1,600 2016-01-04
Wireshark MEDIUM 5.5
CVE-2015-8741

The dissect_ppi function in epan/dissectors/packet-ppi.c in the PPI dissector in Wireshark 2.0.x before 2.0.1 does not initialize a packet-header dat…

Mitigation only
Fix from $1,600 2016-01-04
Wireshark MEDIUM 5.3
CVE-2015-8740EPSS 7%

The dissect_tds7_colmetadata_token function in epan/dissectors/packet-tds.c in the TDS dissector in Wireshark 2.0.x before 2.0.1 does not validate th…

Mitigation only
Fix from $1,600 2016-01-04
Wireshark MEDIUM 5.5
CVE-2015-8738

The s7comm_decode_ud_cpu_szl_subfunc function in epan/dissectors/packet-s7comm_szl_ids.c in the S7COMM dissector in Wireshark 2.0.x before 2.0.1 does…

Mitigation only
Fix from $1,600 2016-01-04
Wireshark MEDIUM 5.5
CVE-2015-8739

The ipmi_fmt_udpport function in epan/dissectors/packet-ipmi.c in the IPMI dissector in Wireshark 2.0.x before 2.0.1 improperly attempts to access a …

Mitigation only
Fix from $1,600 2016-01-04
Wireshark MEDIUM 5.5
CVE-2015-8737

The mp2t_open function in wiretap/mp2t.c in the MP2T file parser in Wireshark 2.0.x before 2.0.1 does not validate the bit rate, which allows remote …

Mitigation only
Fix from $1,600 2016-01-04
Wireshark MEDIUM 5.5
CVE-2015-8736

The mp2t_find_next_pcr function in wiretap/mp2t.c in the MP2T file parser in Wireshark 2.0.x before 2.0.1 does not reserve memory for a trailer, whic…

Mitigation only
Fix from $1,600 2016-01-04