| OSVDB ID | Disclosure Date | Title |
|
89666
Description:
Wireshark contains a flaw in the DTN dissector that may allow a remote denial of service. The issue is triggered when parsing a malformed crafted packet by the dissect_version_4_primary_header or dissect_version_5_and_6_primary_header function in epan/dissectors/packet-dtn.c. This may allow a remote attacker to cause the program to crash.
|
2012-11-01
|
Wireshark DTN Dissector epan/dissectors/packet-dtn.c Multiple Function Malformed Packet Parsing Remote DoS
|
|
87994
Description:
Wireshark contains a flaw that may allow a remote denial of service. The issue is triggered when an error occurs in the EIGRP dissector during the processing of a malformed packet or when viewing a trace file containing malformed traffic. This will cause an infinite loop, which will result in a loss of availability.
|
2012-11-28
|
Wireshark EIGRP Dissector Malformed Packet Processing Infinite Loop Remote DoS
|
|
70244
Description:
Wireshark is prone to an overflow condition. The the 'dissect_enttec_dmx_data()' function fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted packet sent to UDP port 3333, a remote attacker can potentially execute arbitrary code.
|
2010-12-31
|
Wireshark ENTTEC Dissector epan/dissectors/packet-enttec.c dissect_enttec_dmx_data() Function Overflow
|
|
71848
Description:
Wireshark is prone to an overflow condition. The DECT dissector in epan/dissectors/packet-dect.c fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted packet, a remote attacker can potentially execute arbitrary code.
|
2011-04-15
|
Wireshark epan/dissectors/packet-dect.c DECT Dissector Overflow
|
|
72978
Description:
(Description Provided by CVE) : Double free vulnerability in the tvb_uncompress function in epan/tvbuff.c in Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows remote attackers to cause a denial of service (application crash) via a packet with malformed data that uses zlib compression.
|
2011-05-31
|
Wireshark epan/tvbuff.c tvb_uncompress Function Double-free Remote DoS
|
|
84785
Description:
Wireshark is prone to multiple overflow conditions. The ERF dissector fails to properly sanitize user-supplied input resulting in multiple buffer overflows. With a specially crafted packet, a remote attacker can potentially execute arbitrary code or cause a denial of service.
|
2012-08-15
|
Wireshark ERF Dissector Malformed Packet Parsing Multiple Overflow
|
|
76770
Description:
(Description Provided by CVE) : Heap-based buffer overflow in the erf_read_header function in wiretap/erf.c in the ERF file parser in Wireshark 1.4.0 through 1.4.9 and 1.6.x before 1.6.3 allows remote attackers to cause a denial of service (application crash) via a malformed file.
|
2011-11-01
|
Wireshark ERF File Parser Remote Overflow
|
|
93506
Description:
Wireshark contains a flaw in the ETCH dissector (packet-etch.c) that may allow a remote denial of service. The issue is triggered when handling a malformed packet. This may allow a remote attacker to crash the program.
|
2013-03-12
|
Wireshark ETCH Dissector (packet-etch.c) Malformed Packet Handling Remote DoS
|
|
84787
Description:
Wireshark contains a flaw that may allow a remote denial of service. The issue is triggered when an error occurs in the EtherCAT Mailbox dissector during the parsing of a malformed packet. This will result in loss of availability for the program.
|
2012-08-16
|
Wireshark EtherCAT Mailbox Dissector Malformed Packet Parsing Remote DoS
|
|
91000
Description:
Wireshark contains a flaw in the FCSP Dissector that may allow a remote denial of service. The issue is triggered when handling a specific type of malformed packet, either via the network, or when replayed via a trace file. This may allow a remote attacker to cause an infinite loop, which will crash the program.
|
2013-03-06
|
Wireshark FCSP Dissector Malformed Packet Handling Infinite Loop Remote DoS
|
|
78258
Description:
Wireshark contains a flaw in the handling of capture files that may allow a remote denial of service. The issue is due to an error in the dissect_packet function in epan/packet.c. With a specially crafted capture file containing an overly long packet, a context-dependent attacker can cause the program to crash.
|
2012-01-11
|
Wireshark File Parser Capture File Handling Remote DoS
|
|
40454
Description:
(Description Provided by CVE) : The Firebird/Interbase dissector in Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial of service (infinite loop or crash) via unknown vectors.
|
2007-11-26
|
Wireshark Firebird/Interbase Dissector Unspecified Infinite Loop Remote DoS
|
|
66792
Description:
(Description Provided by CVE) : packet-gsm_a_rr.c in the GSM A RR dissector in Wireshark 1.2.2 through 1.2.9 allows remote attackers to cause a denial of service (crash) via unknown vectors that trigger a NULL pointer dereference.
|
2010-07-29
|
Wireshark GSM A RR Dissector NULL Dereference DoS
|
|
58238
Description:
(Description Provided by CVE) : Unspecified vulnerability in packet.c in the GSM A RR dissector in Wireshark 1.2.0 and 1.2.1 allows remote attackers to cause a denial of service (application crash) via unknown vectors related to "an uninitialized dissector handle," which triggers an assertion failure.
|
2009-09-15
|
Wireshark GSM A RR Dissector packet.c Unspecified Remote DoS
|
|
27360
Description:
The Wireshark GSM BSSMAP dissector contains a flaw that may allow a remote denial of service. The issue is triggered when by a malformed packet or trace file, and will result in loss of availability for the application.
|
2006-07-17
|
Wireshark GSM BSSMAP Dissector Unspecified DoS
|
|
89672
Description:
Wireshark contains a flaw in the GSM RLC MAC dissector that may allow a remote denial of service. The issue is triggered when parsing a specially crafted packet. This may allow a remote attacker to cause an infinite loop and crash the system.
|
2012-12-02
|
Wireshark GSM RLC MAC Dissector Crafted Packet Parsing Infinite Loop Remote DoS
|
|
84777
Description:
Wireshark contains a flaw that may allow a remote denial of service. The issue is triggered when an error occurs in the GSM RLC MAC dissector during the parsing of a malformed packet. This will result in loss of availability for the program.
|
2012-08-15
|
Wireshark GSM RLC MAC Dissector Malformed Packet Parsing Overflow
|
|
46646
Description:
(Description Provided by CVE) : The GSM SMS dissector in Wireshark (formerly Ethereal) 0.99.2 through 1.0.0 allows remote attackers to cause a denial of service (application crash) via unknown vectors.
|
2008-06-30
|
Wireshark GSM SMS Dissector Unspecified DoS
|
|
93508
Description:
Wireshark contains a flaw in the GTPv2 dissector that may allow a remote denial of service. The issue is triggered when handling a malformed packet. This may allow a remote attacker to crash the program.
|
2013-03-18
|
Wireshark GTPv2 Dissector Malformed Packet Handling Remote DoS
|
|
90989
Description:
Wireshark contains a flaw in the HART/IP dissector that may allow a remote denial of service. The issue is triggered when handling a specific type of malformed packet, either via the network, or when replayed via a trace file. This may allow a remote attacker to cause an infinite loop and a consumption of CPU resources.
|
2013-03-06
|
Wireshark HART/IP Dissector Malformed Packet Handling Infinite Loop Remote DoS
|
|
52157
Description:
(Description Provided by CVE) : Format string vulnerability in Wireshark 0.99.8 through 1.0.5 on non-Windows platforms allows local users to cause a denial of service (application crash) via format string specifiers in the HOME environment variable.
|
2009-02-06
|
Wireshark HOME Environment Variable Local Format String
|
|
85884
Description:
Wireshark contains a flaw that may allow a remote denial of service. The issue is triggered when an error occurs in the HSRP dissector during the parsing of a malformed packet. This will result in an infinite loop and a loss of availability for the program.
|
2012-10-02
|
Wireshark HSRP Dissector Malformed Packet Parsing Infinite Loop Remote DoS
|
|
40453
Description:
(Description Provided by CVE) : Unspecified vulnerability in the HTTP dissector for Wireshark (formerly Ethereal) 0.10.14 to 0.99.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted chunked messages.
|
2007-11-26
|
Wireshark HTTP Dissector Chunked Message Handling Unspecified Remote Issue
|
|
30068
Description:
The Wireshark HTTP dissector contains a flaw that may allow a remote denial of service. The issue is triggered by a malformed packet or trace file, and will result in loss of availability for the application.
|
2006-10-27
|
Wireshark HTTP Dissector Unspecified DoS
|
|
33075
Description:
(Description Provided by CVE) : Unspecified vulnerability in the HTTP dissector in Wireshark (formerly Ethereal) 0.99.3 and 0.99.4 allows remote attackers to cause a denial of service (application crash) via unspecified vectors, a different issue than CVE-2006-5468.
|
2007-02-01
|
Wireshark HTTP Dissector Unspecified Remote DoS
|
|
37643
Description:
Wireshark contains a flaw that may allow a remote denial of service. The issue is triggered when a specially crafted HTTP response is received, and will result in loss of availability for the application.
|
2007-07-05
|
Wireshark HTTP Response Crafted Chunked Encoding Remote DoS
|
|
87988
Description:
Wireshark contains a flaw that may allow a remote denial of service. The issue is triggered when an error occurs in the ICMPv6 dissector during the processing of a malformed packet or when viewing a packet trace file containing malformed traffic. This will cause an infinite loop, which will result in a loss of availability.
|
2012-11-28
|
Wireshark ICMPv6 Dissector Malformed Packet Processing Infinite Loop Remote DoS
|
|
82157
Description:
Wireshark contains a flaw that may allow a remote denial of service. The issue is triggered when a malformed packet is processed by the IEEE 802.11 dissector, which will result in an infinite loops and a loss of availability for the program.
|
2012-05-22
|
Wireshark IEEE 802.11 Dissector Malformed Packet Parsing Infinite Loop Remote DoS
|
|
33074
Description:
(Description Provided by CVE) : Unspecified vulnerability in the IEEE 802.11 dissector in Wireshark (formerly Ethereal) 0.10.14 through 0.99.4 allows remote attackers to cause a denial of service (application crash) via unspecified vectors.
|
2007-02-01
|
Wireshark IEEE 802.11 Dissector Unspecified DoS
|
|
82158
Description:
Wireshark contains a flaw that may allow a remote denial of service. The issue is triggered when a malformed packet is processed by the IEEE 802.3 dissector, which will result in an infinite loops and a loss of availability for the program.
|
2012-05-22
|
Wireshark IEEE 802.3 Dissector Malformed Packet Parsing Infinite Loop Remote DoS
|