Known Vulnerabilities for products from Wireshark

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Wireshark".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2024-0211 json 7.5 - HIGH 2024-01-03 2024-01-10
CVE-2024-0210 json 7.5 - HIGH 2024-01-03 2024-01-10
CVE-2024-0209 json 7.5 - HIGH 2024-01-03 2024-01-10
CVE-2024-0208 json 7.5 - HIGH 2024-01-03 2024-01-09
CVE-2024-0207 json 7.5 - HIGH 2024-01-03 2024-01-09
CVE-2023-6174 json 6.5 - MEDIUM 2023-11-16 2024-02-04
CVE-2023-5371 json RTPS dissector memory leak in Wireshark 4.0.0 to 4.0.8 and 3.6.0 to 3.6.16 allows denial of service via packet injection or c... 6.5 - MEDIUM 2023-10-04 2024-02-04
CVE-2023-4513 json BT SDP dissector memory leak in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or... 7.5 - HIGH 2023-08-24 2023-09-15
CVE-2023-4512 json CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file 7.5 - HIGH 2023-08-24 2023-09-15
CVE-2023-4511 json BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection ... 7.5 - HIGH 2023-08-24 2023-09-15
CVE-2023-3649 json iSCSI dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file 5.5 - MEDIUM 2023-07-14 2023-07-25
CVE-2023-3648 json Kafka dissector crash in Wireshark 4.0.0 to 4.0.6 and 3.6.0 to 3.6.14 allows denial of service via packet injection or crafte... 5.5 - MEDIUM 2023-07-14 2023-07-25
CVE-2023-2952 json XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or ... 6.5 - MEDIUM 2023-05-30 2023-10-20
CVE-2023-2906 json Due to a failure in validating the length provided by an attacker-crafted CP2179 packet, Wireshark versions 2.0.0 through 4.0... 6.5 - MEDIUM 2023-08-25 2023-09-15
CVE-2023-2879 json GDSDB infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted ... 7.5 - HIGH 2023-05-26 2023-10-20
CVE-2023-2858 json NetScaler file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file 6.5 - MEDIUM 2023-05-26 2023-10-20
CVE-2023-2857 json BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file 6.5 - MEDIUM 2023-05-26 2023-10-20
CVE-2023-2856 json VMS TCPIPtrace file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture... 6.5 - MEDIUM 2023-05-26 2023-10-20
CVE-2023-2855 json Candump log parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file 6.5 - MEDIUM 2023-05-26 2023-10-20
CVE-2023-2854 json BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file 6.5 - MEDIUM 2023-05-26 2023-10-20

Known software with vulnerabilities from Wireshark

Type Vendor Product Version
ApplicationWiresharkWireshark0.99.2