Known Vulnerabilities for products from Wireshark

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Wireshark".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-2952 XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or ... Not Provided 2023-05-30 2023-06-03
CVE-2023-2879 GDSDB infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted ... 7.5 - HIGH 2023-05-26 2023-06-03
CVE-2023-2858 NetScaler file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file 6.5 - MEDIUM 2023-05-26 2023-06-03
CVE-2023-2857 BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file 6.5 - MEDIUM 2023-05-26 2023-05-26
CVE-2023-2856 VMS TCPIPtrace file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture... 6.5 - MEDIUM 2023-05-26 2023-06-03
CVE-2023-2855 Candump log parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file 6.5 - MEDIUM 2023-05-26 2023-05-26
CVE-2023-2854 BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file 6.5 - MEDIUM 2023-05-26 2023-05-26
CVE-2023-1994 GQUIC dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafte... 6.5 - MEDIUM 2023-04-12 2023-04-29
CVE-2023-1993 LISP dissector large loop in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or cr... 6.5 - MEDIUM 2023-04-12 2023-04-29
CVE-2023-1992 RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or cra... 7.5 - HIGH 2023-04-12 2023-04-29
CVE-2022-0586 Infinite loop in RTMPT protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet... 7.5 - HIGH 2022-02-14 2022-11-04
CVE-2022-0585 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 6.5 - MEDIUM 2022-02-18 2022-11-04
CVE-2022-0583 Crash in the PVFS protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet inje... 7.5 - HIGH 2022-02-14 2022-11-04
CVE-2022-0582 Unaligned access in the CSN.1 protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via... 9.8 - CRITICAL 2022-02-14 2022-11-04
CVE-2022-0581 Crash in the CMS protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injec... 7.5 - HIGH 2022-02-14 2022-11-04
CVE-2021-39929 Uncontrolled Recursion in the Bluetooth DHT dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of servic... 7.5 - HIGH 2021-11-19 2022-10-28
CVE-2021-39928 NULL pointer exception in the IEEE 802.11 dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service ... 7.5 - HIGH 2021-11-18 2022-10-28
CVE-2021-39926 Buffer overflow in the Bluetooth HCI_ISO dissector in Wireshark 3.4.0 to 3.4.9 allows denial of service via packet injection ... 7.5 - HIGH 2021-11-19 2022-10-28
CVE-2021-39925 Buffer overflow in the Bluetooth SDP dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via p... 7.5 - HIGH 2021-11-19 2022-10-28
CVE-2021-39924 Large loop in the Bluetooth DHT dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet... 7.5 - HIGH 2021-11-19 2022-10-28

Known software with vulnerabilities from Wireshark

Type Vendor Product Version
ApplicationWiresharkWireshark0.99.2

Popular searches for "Wireshark"

Wireshark Network traffic analyzer

Wireshark is a free and open-source packet analyzer. It is used for network troubleshooting, analysis, software and communications protocol development, and education. Originally named Ethereal, the project was renamed Wireshark in May 2006 due to trademark issues.

Wireshark · Go Deep.

www.wireshark.org

Wireshark Go Deep. Wireshark Deep inspection of hundreds of protocols, with more being added all the time. Live capture and offline analysis. SharkFest, launched in 2008, is a series of annual educational conferences staged in various parts of the globe and focused on sharing knowledge, experience and best practices among the Wireshark & developer and user communities.

freshmeat.sourceforge.net/urls/d0a12d7dd3513cd44fc4cc16f441c5d2 rvbd.ly/MIFSjD bit.ly/2ptMBXQ rvbd.ly/MBoD3B IBM Personal Computer/AT Wireshark Gmail Communication protocol Computer network Data compression Online algorithm AT (form factor) Software feature Network packet Packet analyzer Best practice Cisco Systems Programmer Virtual community Knowledge sharing Computer file .com FreeBSD Web browser

© CVE.report 2023 Twitter Nitter Twitter Viewer |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report