Vulnerability index

Browse CVEs

593 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wireshark HIGH 7.5
CVE-2018-9264

In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the ADB dissector could crash with a heap-based buffer overflow. This was addressed in epan/dissecto…

Fix: after 2.4.5
Fix from $1,950 2018-04-04
Wireshark HIGH 7.5
CVE-2018-7330

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-thread.c had an infinite loop that was addressed by using a correct integer d…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7331

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-ber.c had an infinite loop that was addressed by validating a length.

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7332

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-reload.c had an infinite loop that was addressed by validating a length.

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7333

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-rpcrdma.c had an infinite loop that was addressed by validating a chunk size.

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7334

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, the UMTS MAC dissector could crash. This was addressed in epan/dissectors/packet-umts_mac.c by rejec…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7335

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, the IEEE 802.11 dissector could crash. This was addressed in epan/crypt/airpdcap.c by rejecting leng…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7336

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, the FCP protocol dissector could crash. This was addressed in epan/dissectors/packet-fcp.c by checki…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7337

In Wireshark 2.4.0 to 2.4.4, the DOCSIS protocol dissector could crash. This was addressed in plugins/docsis/packet-docsis.c by removing the recursiv…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7417

In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the IPMI dissector could crash. This was addressed in epan/dissectors/packet-ipmi-picmg.c by adding …

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7418

In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the SIGCOMP dissector could crash. This was addressed in epan/dissectors/packet-sigcomp.c by correct…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7419

In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the NBAP dissector could crash. This was addressed in epan/dissectors/asn1/nbap/nbap.cnf by ensuring…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7420

In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the pcapng file parser could crash. This was addressed in wiretap/pcapng.c by adding a block-size ch…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7421

In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the DMP dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-dmp.c…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7320

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, the SIGCOMP protocol dissector could crash. This was addressed in epan/dissectors/packet-sigcomp.c b…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7321

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-thrift.c had a large loop that was addressed by not proceeding with dissectio…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7322

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-dcm.c had an infinite loop that was addressed by checking for integer wraparo…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7323

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-wccp.c had a large loop that was addressed by ensuring that a calculated leng…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7324

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-sccp.c had an infinite loop that was addressed by using a correct integer dat…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7325

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-rpki-rtr.c had an infinite loop that was addressed by validating a length fie…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7326

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-lltd.c had an infinite loop that was addressed by using a correct integer dat…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7327

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-openflow_v6.c had an infinite loop that was addressed by validating property …

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7328

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-usb.c had an infinite loop that was addressed by rejecting short frame header…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark HIGH 7.5
CVE-2018-7329

In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, epan/dissectors/packet-s7comm.c had an infinite loop that was addressed by correcting off-by-one err…

Fix: after 2.4.4
Fix from $1,950 2018-02-23
Wireshark CRITICAL 9.8
CVE-2018-6836

The netmonrec_comment_destroy function in wiretap/netmon.c in Wireshark through 2.4.4 performs a free operation on an uninitialized memory address, w…

Fix: after 2.4.4
Fix from $2,300 2018-02-08
Wireshark HIGH 7.5
CVE-2018-5336

In Wireshark 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11, the JSON, XML, NTP, XMPP, and GDB dissectors could crash. This was addressed in epan/tvbparse.c by l…

Fix: after 2.4.3
Fix from $1,950 2018-01-11
Wireshark MEDIUM 6.5
CVE-2018-5334

In Wireshark 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11, the IxVeriWave file parser could crash. This was addressed in wiretap/vwr.c by correcting the signat…

Fix: after 2.4.3
Fix from $1,600 2018-01-11
Wireshark MEDIUM 6.5
CVE-2018-5335

In Wireshark 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11, the WCP dissector could crash. This was addressed in epan/dissectors/packet-wcp.c by validating the …

Fix: after 2.4.3
Fix from $1,600 2018-01-11
Wireshark HIGH 7.5
CVE-2017-17997

In Wireshark before 2.2.12, the MRDISC dissector misuses a NULL pointer and crashes. This was addressed in epan/dissectors/packet-mrdisc.c by validat…

Fix: after 2.2.11
Fix from $1,950 2017-12-30
Wireshark HIGH 7.5
CVE-2017-17935

The File_read_line function in epan/wslua/wslua_file.c in Wireshark through 2.2.11 does not properly strip '\n' characters, which allows remote attac…

Fix: after 2.2.11
Fix from $1,950 2017-12-27