Debian Wireshark vulnerabilities
668 known vulnerabilities affecting debian/wireshark.
Total CVEs
668
CISA KEV
0
Public exploits
50
Exploited in wild
0
Severity breakdown
CRITICAL8HIGH129MEDIUM276LOW255
Vulnerabilities
Page 1 of 34
CVE-2010-0304P2HIGHCVSS 7.5PoCfixed in wireshark 1.2.6-1 (bookworm)2010
CVE-2010-0304 [HIGH] CVE-2010-0304: wireshark - Multiple buffer overflows in the LWRES dissector in Wireshark 0.9.15 through 1.0...
Multiple buffer overflows in the LWRES dissector in Wireshark 0.9.15 through 1.0.10 and 1.2.0 through 1.2.5 allow remote attackers to cause a denial of service (crash) via a malformed packet, as demonstrated using a stack-based buffer overflow to the dissect_getaddrsbyname_request function.
Scope: local
bookworm: resolved (fixed in 1.2.6-1)
bullseye: resolved (fixed
debian
CVE-2014-2299P2CRITICALCVSS 9.3PoCfixed in wireshark 1.10.6-1 (bookworm)2014
CVE-2014-2299 [CRITICAL] CVE-2014-2299: wireshark - Buffer overflow in the mpeg_read function in wiretap/mpeg.c in the MPEG parser i...
Buffer overflow in the mpeg_read function in wiretap/mpeg.c in the MPEG parser in Wireshark 1.8.x before 1.8.13 and 1.10.x before 1.10.6 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a large record in MPEG data.
Scope: local
bookworm: resolved (fixed in 1.10.6-1)
bullseye: resolved (fixed in 1.10.6-1)
fork
debian
CVE-2011-1591P2CRITICALCVSS 9.3PoCfixed in wireshark 1.4.5-1 (bookworm)2011
CVE-2011-1591 [CRITICAL] CVE-2011-1591: wireshark - Stack-based buffer overflow in the DECT dissector in epan/dissectors/packet-dect...
Stack-based buffer overflow in the DECT dissector in epan/dissectors/packet-dect.c in Wireshark 1.4.x before 1.4.5 allows remote attackers to execute arbitrary code via a crafted .pcap file.
Scope: local
bookworm: resolved (fixed in 1.4.5-1)
bullseye: resolved (fixed in 1.4.5-1)
forky: resolved (fixed in 1.4.5-1)
sid: resolved (fixed in 1.4.5-1)
trixie: resolved
debian
CVE-2010-4538P2CRITICALCVSS 9.3PoCfixed in wireshark 1.2.11-6 (bookworm)2010
CVE-2010-4538 [CRITICAL] CVE-2010-4538: wireshark - Buffer overflow in the sect_enttec_dmx_da function in epan/dissectors/packet-ent...
Buffer overflow in the sect_enttec_dmx_da function in epan/dissectors/packet-enttec.c in Wireshark 1.4.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted ENTTEC DMX packet with Run Length Encoding (RLE) compression.
Scope: local
bookworm: resolved (fixed in 1.2.11-6)
bullseye: resolved (fix
debian
CVE-2011-3360P3LOWCVSS 9.3PoCfixed in wireshark 1.6.2-1 (bookworm)2011
CVE-2011-3360 [CRITICAL] CVE-2011-3360: wireshark - Untrusted search path vulnerability in Wireshark 1.4.x before 1.4.9 and 1.6.x be...
Untrusted search path vulnerability in Wireshark 1.4.x before 1.4.9 and 1.6.x before 1.6.2 allows local users to gain privileges via a Trojan horse Lua script in an unspecified directory.
Scope: local
bookworm: resolved (fixed in 1.6.2-1)
bullseye: resolved (fixed in 1.6.2-1)
forky: resolved (fixed in 1.6.2-1)
sid: resolved (fixed in 1.6.2-1)
trixie: resolved (f
debian
CVE-2009-1210P2LOWCVSS 10.0PoCfixed in wireshark 1.0.7-1 (bookworm)2009
CVE-2009-1210 [CRITICAL] CVE-2009-1210: wireshark - Format string vulnerability in the PROFINET/DCP (PN-DCP) dissector in Wireshark ...
Format string vulnerability in the PROFINET/DCP (PN-DCP) dissector in Wireshark 1.0.6 and earlier allows remote attackers to execute arbitrary code via a PN-DCP packet with format string specifiers in the station name. NOTE: some of these details are obtained from third party information.
Scope: local
bookworm: resolved (fixed in 1.0.7-1)
bullseye: resolved (fix
debian
CVE-2017-17085P3HIGHCVSS 7.5PoCfixed in wireshark 2.4.3-1 (bookworm)2017
CVE-2017-17085 [HIGH] CVE-2017-17085: wireshark - In Wireshark 2.4.0 to 2.4.2 and 2.2.0 to 2.2.10, the CIP Safety dissector could ...
In Wireshark 2.4.0 to 2.4.2 and 2.2.0 to 2.2.10, the CIP Safety dissector could crash. This was addressed in epan/dissectors/packet-cipsafety.c by validating the packet length.
Scope: local
bookworm: resolved (fixed in 2.4.3-1)
bullseye: resolved (fixed in 2.4.3-1)
forky: resolved (fixed in 2.4.3-1)
sid: resolved (fixed in 2.4.3-1)
trixie: resolved (fixed in 2.4.3
debian
CVE-2018-19627P3HIGHCVSS 7.5PoCfixed in wireshark 2.6.5-1 (bookworm)2018
CVE-2018-19627 [HIGH] CVE-2018-19627: wireshark - In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the IxVeriWave file parser coul...
In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the IxVeriWave file parser could crash. This was addressed in wiretap/vwr.c by adjusting a buffer boundary.
Scope: local
bookworm: resolved (fixed in 2.6.5-1)
bullseye: resolved (fixed in 2.6.5-1)
forky: resolved (fixed in 2.6.5-1)
sid: resolved (fixed in 2.6.5-1)
trixie: resolved (fixed in 2.6.5-1)
debian
CVE-2010-4300P3HIGHCVSS 7.5PoCfixed in wireshark 1.2.11-4 (bookworm)2010
CVE-2010-4300 [HIGH] CVE-2010-4300: wireshark - Heap-based buffer overflow in the dissect_ldss_transfer function (epan/dissector...
Heap-based buffer overflow in the dissect_ldss_transfer function (epan/dissectors/packet-ldss.c) in the LDSS dissector in Wireshark 1.2.0 through 1.2.12 and 1.4.0 through 1.4.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an LDSS packet with a long digest line that triggers memory corruption.
Scope: local
bookw
debian
CVE-2017-9353P3LOWCVSS 7.5PoCfixed in wireshark 2.2.7-1 (bookworm)2017
CVE-2017-9353 [HIGH] CVE-2017-9353: wireshark - In Wireshark 2.2.0 to 2.2.6, the IPv6 dissector could crash. This was addressed ...
In Wireshark 2.2.0 to 2.2.6, the IPv6 dissector could crash. This was addressed in epan/dissectors/packet-ipv6.c by validating an IPv6 address.
Scope: local
bookworm: resolved (fixed in 2.2.7-1)
bullseye: resolved (fixed in 2.2.7-1)
forky: resolved (fixed in 2.2.7-1)
sid: resolved (fixed in 2.2.7-1)
trixie: resolved (fixed in 2.2.7-1)
debian
CVE-2017-9347P3HIGHCVSS 7.5PoCfixed in wireshark 2.2.7-1 (bookworm)2017
CVE-2017-9347 [HIGH] CVE-2017-9347: wireshark - In Wireshark 2.2.0 to 2.2.6, the ROS dissector could crash with a NULL pointer d...
In Wireshark 2.2.0 to 2.2.6, the ROS dissector could crash with a NULL pointer dereference. This was addressed in epan/dissectors/asn1/ros/packet-ros-template.c by validating an OID.
Scope: local
bookworm: resolved (fixed in 2.2.7-1)
bullseye: resolved (fixed in 2.2.7-1)
forky: resolved (fixed in 2.2.7-1)
sid: resolved (fixed in 2.2.7-1)
trixie: resolved (fixed in 2
debian
CVE-2013-4074P3MEDIUMCVSS 5.0PoCfixed in wireshark 1.10.0-1 (bookworm)2013
CVE-2013-4074 [MEDIUM] CVE-2013-4074: wireshark - The dissect_capwap_data function in epan/dissectors/packet-capwap.c in the CAPWA...
The dissect_capwap_data function in epan/dissectors/packet-capwap.c in the CAPWAP dissector in Wireshark 1.6.x before 1.6.16 and 1.8.x before 1.8.8 incorrectly uses a -1 data value to represent an error condition, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
Scope: local
bookworm: resolved (fixed in 1.10.0-1)
debian
CVE-2009-3241P3LOWCVSS 7.8PoCfixed in wireshark 1.2.2-1 (bookworm)2009
CVE-2009-3241 [HIGH] CVE-2009-3241: wireshark - Unspecified vulnerability in the OpcUa (OPC UA) dissector in Wireshark 0.99.6 th...
Unspecified vulnerability in the OpcUa (OPC UA) dissector in Wireshark 0.99.6 through 1.0.8 and 1.2.0 through 1.2.1 allows remote attackers to cause a denial of service (memory and CPU consumption) via malformed OPCUA Service CallRequest packets.
Scope: local
bookworm: resolved (fixed in 1.2.2-1)
bullseye: resolved (fixed in 1.2.2-1)
forky: resolved (fixed in 1.2.2-
debian
CVE-2016-6512P3MEDIUMCVSS 5.9PoCfixed in wireshark 2.0.5+ga3be9c6-1 (bookworm)2016
CVE-2016-6512 [MEDIUM] CVE-2016-6512: wireshark - epan/dissectors/packet-wap.c in Wireshark 2.x before 2.0.5 omits an overflow che...
epan/dissectors/packet-wap.c in Wireshark 2.x before 2.0.5 omits an overflow check in the tvb_get_guintvar function, which allows remote attackers to cause a denial of service (infinite loop) via a crafted packet, related to the MMSE, WAP, WBXML, and WSP dissectors.
Scope: local
bookworm: resolved (fixed in 2.0.5+ga3be9c6-1)
bullseye: resolved (fixed in 2.0.5+ga3b
debian
CVE-2016-6505P3MEDIUMCVSS 5.9PoCfixed in wireshark 2.0.5+ga3be9c6-1 (bookworm)2016
CVE-2016-6505 [MEDIUM] CVE-2016-6505: wireshark - epan/dissectors/packet-packetbb.c in the PacketBB dissector in Wireshark 1.12.x ...
epan/dissectors/packet-packetbb.c in the PacketBB dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted packet.
Scope: local
bookworm: resolved (fixed in 2.0.5+ga3be9c6-1)
bullseye: resolved (fixed in 2.0.5+ga3be9c6-1)
forky: resolved (fixed
debian
CVE-2016-6504P3MEDIUMCVSS 5.9PoCfixed in wireshark 2.0 (bookworm)2016
CVE-2016-6504 [MEDIUM] CVE-2016-6504: wireshark - epan/dissectors/packet-ncp2222.inc in the NDS dissector in Wireshark 1.12.x befo...
epan/dissectors/packet-ncp2222.inc in the NDS dissector in Wireshark 1.12.x before 1.12.13 does not properly maintain a ptvc data structure, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted packet.
Scope: local
bookworm: resolved (fixed in 2.0)
bullseye: resolved (fixed in 2.0)
forky: resolve
debian
CVE-2011-0538P3LOWCVSS 6.8PoCfixed in wireshark 1.4.3-3 (bookworm)2011
CVE-2011-0538 [MEDIUM] CVE-2011-0538: wireshark - Wireshark 1.2.0 through 1.2.14, 1.4.0 through 1.4.3, and 1.5.0 frees an uninitia...
Wireshark 1.2.0 through 1.2.14, 1.4.0 through 1.4.3, and 1.5.0 frees an uninitialized pointer during processing of a .pcap file in the pcap-ng format, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a malformed file.
Scope: local
bookworm: resolved (fixed in 1.4.3-3)
bullseye: resolved (f
debian
CVE-2015-8740P3MEDIUMCVSS 5.3PoCfixed in wireshark 2.0.1+g59ea380-1 (bookworm)2015
CVE-2015-8740 [MEDIUM] CVE-2015-8740: wireshark - The dissect_tds7_colmetadata_token function in epan/dissectors/packet-tds.c in t...
The dissect_tds7_colmetadata_token function in epan/dissectors/packet-tds.c in the TDS dissector in Wireshark 2.0.x before 2.0.1 does not validate the number of columns, which allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) via a crafted packet.
Scope: local
bookworm: resolved (fixed in 2.0.1+g59ea380-1)
bul
debian
CVE-2021-22191P3MEDIUMCVSS 6.3fixed in wireshark 3.4.4-1 (bookworm)2021
CVE-2021-22191 [MEDIUM] CVE-2021-22191: wireshark - Improper URL handling in Wireshark 3.4.0 to 3.4.3 and 3.2.0 to 3.2.11 could allo...
Improper URL handling in Wireshark 3.4.0 to 3.4.3 and 3.2.0 to 3.2.11 could allow remote code execution via via packet injection or crafted capture file.
Scope: local
bookworm: resolved (fixed in 3.4.4-1)
bullseye: resolved (fixed in 3.4.4-1)
forky: resolved (fixed in 3.4.4-1)
sid: resolved (fixed in 3.4.4-1)
trixie: resolved (fixed in 3.4.4-1)
debian
CVE-2015-8723P4MEDIUMCVSS 5.5PoCfixed in wireshark 2.0.1+g59ea380-1 (bookworm)2015
CVE-2015-8723 [MEDIUM] CVE-2015-8723: wireshark - The AirPDcapPacketProcess function in epan/crypt/airpdcap.c in the 802.11 dissec...
The AirPDcapPacketProcess function in epan/crypt/airpdcap.c in the 802.11 dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the relationship between the total length and the capture length, which allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) via a crafted packet.
Scope: l
debian
1 / 34Next →