cbcvebase.

Debian Wireshark vulnerabilities

668 known vulnerabilities affecting debian/wireshark.

Total CVEs
668
CISA KEV
0
Public exploits
50
Exploited in wild
0
Severity breakdown
CRITICAL8HIGH129MEDIUM276LOW255

Vulnerabilities

Page 15 of 34
CVE-2016-2528P4MEDIUMCVSS 5.9fixed in wireshark 2.0.2+ga16e22e-1 (bookworm)2016
CVE-2016-2528 [MEDIUM] CVE-2016-2528: wireshark - The dissect_nhdr_extopt function in epan/dissectors/packet-lbmc.c in the LBMC di... The dissect_nhdr_extopt function in epan/dissectors/packet-lbmc.c in the LBMC dissector in Wireshark 2.0.x before 2.0.2 does not validate length values, which allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) via a crafted packet. Scope: local bookworm: resolved (fixed in 2.0.2+ga16e22e-1) bullseye: resolved (
debian
CVE-2023-1161P4MEDIUMCVSS 6.3fixed in wireshark 4.0.6-1~deb12u1 (bookworm)2023
CVE-2023-1161 [MEDIUM] CVE-2023-1161: wireshark - ISO 15765 and ISO 10681 dissector crash in Wireshark 4.0.0 to 4.0.3 and 3.6.0 to... ISO 15765 and ISO 10681 dissector crash in Wireshark 4.0.0 to 4.0.3 and 3.6.0 to 3.6.11 allows denial of service via packet injection or crafted capture file Scope: local bookworm: resolved (fixed in 4.0.6-1~deb12u1) bullseye: resolved (fixed in 3.4.16-0+deb11u1) forky: resolved (fixed in 4.0.6-1) sid: resolved (fixed in 4.0.6-1) trixie: resolved (fixed in 4.0.6-1
debian
CVE-2025-5601P4HIGHCVSS 7.8fixed in wireshark 3.4.16-0+deb11u2 (bullseye)2025
CVE-2025-5601 [HIGH] CVE-2025-5601: wireshark - Column handling crashes in Wireshark 4.4.0 to 4.4.6 and 4.2.0 to 4.2.12 allows d... Column handling crashes in Wireshark 4.4.0 to 4.4.6 and 4.2.0 to 4.2.12 allows denial of service via packet injection or crafted capture file Scope: local bookworm: open bullseye: resolved (fixed in 3.4.16-0+deb11u2) forky: resolved (fixed in 4.4.7-1) sid: resolved (fixed in 4.4.7-1) trixie: resolved (fixed in 4.4.7-1)
debian
CVE-2022-0585P4MEDIUMCVSS 4.3fixed in wireshark 3.6.2-1 (bookworm)2022
CVE-2022-0585 [MEDIUM] CVE-2022-0585: wireshark - Large loops in multiple protocol dissectors in Wireshark 3.6.0 to 3.6.1 and 3.4.... Large loops in multiple protocol dissectors in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allow denial of service via packet injection or crafted capture file Scope: local bookworm: resolved (fixed in 3.6.2-1) bullseye: resolved (fixed in 3.4.16-0+deb11u1) forky: resolved (fixed in 3.6.2-1) sid: resolved (fixed in 3.6.2-1) trixie: resolved (fixed in 3.6.2-1)
debian
CVE-2016-4085P4MEDIUMCVSS 5.9fixed in wireshark 2.0.0~rc2+g74e5b56-1 (bookworm)2016
CVE-2016-4085 [MEDIUM] CVE-2016-4085: wireshark - Stack-based buffer overflow in epan/dissectors/packet-ncp2222.inc in the NCP dis... Stack-based buffer overflow in epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 1.12.x before 1.12.11 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a long string in a packet. Scope: local bookworm: resolved (fixed in 2.0.0~rc2+g74e5b56-1) bullseye: resolved (fixed in 2.0.0
debian
CVE-2016-7179P4MEDIUMCVSS 5.9fixed in wireshark 2.2.0~rc1+g438c022-1 (bookworm)2016
CVE-2016-7179 [MEDIUM] CVE-2016-7179: wireshark - Stack-based buffer overflow in epan/dissectors/packet-catapult-dct2000.c in the ... Stack-based buffer overflow in epan/dissectors/packet-catapult-dct2000.c in the Catapult DCT2000 dissector in Wireshark 2.x before 2.0.6 allows remote attackers to cause a denial of service (application crash) via a crafted packet. Scope: local bookworm: resolved (fixed in 2.2.0~rc1+g438c022-1) bullseye: resolved (fixed in 2.2.0~rc1+g438c022-1) forky: resolved (fi
debian
CVE-2016-6508P4MEDIUMCVSS 5.9fixed in wireshark 2.0.5+ga3be9c6-1 (bookworm)2016
CVE-2016-6508 [MEDIUM] CVE-2016-6508: wireshark - epan/dissectors/packet-rlc.c in the RLC dissector in Wireshark 1.12.x before 1.1... epan/dissectors/packet-rlc.c in the RLC dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (large loop) via a crafted packet. Scope: local bookworm: resolved (fixed in 2.0.5+ga3be9c6-1) bullseye: resolved (fixed in 2.0.5+ga3be9c6-1) forky: resolved (fixed
debian
CVE-2016-6510P4MEDIUMCVSS 5.9fixed in wireshark 2.0.5+ga3be9c6-1 (bookworm)2016
CVE-2016-6510 [MEDIUM] CVE-2016-6510: wireshark - Off-by-one error in epan/dissectors/packet-rlc.c in the RLC dissector in Wiresha... Off-by-one error in epan/dissectors/packet-rlc.c in the RLC dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) via a crafted packet. Scope: local bookworm: resolved (fixed in 2.0.5+ga3be9c6-1) bullseye: resolved (fixed in 2.0.5+ga3be9c6-1) forky:
debian
CVE-2006-4574P4MEDIUMCVSS 7.5fixed in wireshark 0.99.4-1 (bookworm)2006
CVE-2006-4574 [HIGH] CVE-2006-4574: wireshark - Off-by-one error in the MIME Multipart dissector in Wireshark (formerly Ethereal... Off-by-one error in the MIME Multipart dissector in Wireshark (formerly Ethereal) 0.10.1 through 0.99.3 allows remote attackers to cause a denial of service (crash) via certain vectors that trigger an assertion error related to unexpected length values. Scope: local bookworm: resolved (fixed in 0.99.4-1) bullseye: resolved (fixed in 0.99.4-1) forky: resolved (fixed
debian
CVE-2023-0412P4MEDIUMCVSS 6.3fixed in wireshark 4.0.3-1 (bookworm)2023
CVE-2023-0412 [MEDIUM] CVE-2023-0412: wireshark - TIPC dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows ... TIPC dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file Scope: local bookworm: resolved (fixed in 4.0.3-1) bullseye: resolved (fixed in 3.4.16-0+deb11u1) forky: resolved (fixed in 4.0.3-1) sid: resolved (fixed in 4.0.3-1) trixie: resolved (fixed in 4.0.3-1)
debian
CVE-2006-3629P4HIGHCVSS 7.8fixed in wireshark 0.99.2-1 (bookworm)2006
CVE-2006-3629 [HIGH] CVE-2006-3629: wireshark - Unspecified vulnerability in the MOUNT dissector in Wireshark (aka Ethereal) 0.9... Unspecified vulnerability in the MOUNT dissector in Wireshark (aka Ethereal) 0.9.4 to 0.99.0 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors. Scope: local bookworm: resolved (fixed in 0.99.2-1) bullseye: resolved (fixed in 0.99.2-1) forky: resolved (fixed in 0.99.2-1) sid: resolved (fixed in 0.99.2-1) trixie: resolve
debian
CVE-2014-8713P4MEDIUMCVSS 5.0fixed in wireshark 1.12.1+g01b65bf-2 (bookworm)2014
CVE-2014-8713 [MEDIUM] CVE-2014-8713: wireshark - Stack-based buffer overflow in the build_expert_data function in epan/dissectors... Stack-based buffer overflow in the build_expert_data function in epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 1.10.x before 1.10.11 and 1.12.x before 1.12.2 allows remote attackers to cause a denial of service (application crash) via a crafted packet. Scope: local bookworm: resolved (fixed in 1.12.1+g01b65bf-2) bullseye: resolved (fixed in
debian
CVE-2013-4930P4MEDIUMCVSS 5.0fixed in wireshark 1.10.1-1 (bookworm)2013
CVE-2013-4930 [MEDIUM] CVE-2013-4930: wireshark - The dissect_dvbci_tpdu_hdr function in epan/dissectors/packet-dvbci.c in the DVB... The dissect_dvbci_tpdu_hdr function in epan/dissectors/packet-dvbci.c in the DVB-CI dissector in Wireshark 1.8.x before 1.8.9 and 1.10.x before 1.10.1 does not validate a certain length value before decrementing it, which allows remote attackers to cause a denial of service (assertion failure and application exit) via a crafted packet. Scope: local bookworm: resol
debian
CVE-2014-8714P4MEDIUMCVSS 5.0fixed in wireshark 1.12.1+g01b65bf-2 (bookworm)2014
CVE-2014-8714 [MEDIUM] CVE-2014-8714: wireshark - The dissect_write_structured_field function in epan/dissectors/packet-tn5250.c i... The dissect_write_structured_field function in epan/dissectors/packet-tn5250.c in the TN5250 dissector in Wireshark 1.10.x before 1.10.11 and 1.12.x before 1.12.2 allows remote attackers to cause a denial of service (infinite loop) via a crafted packet. Scope: local bookworm: resolved (fixed in 1.12.1+g01b65bf-2) bullseye: resolved (fixed in 1.12.1+g01b65bf-2) for
debian
CVE-2007-3391P4HIGHCVSS 7.8fixed in wireshark 0.99.6pre1-1 (bookworm)2007
CVE-2007-3391 [HIGH] CVE-2007-3391: wireshark - Wireshark 0.99.5 allows remote attackers to cause a denial of service (memory co... Wireshark 0.99.5 allows remote attackers to cause a denial of service (memory consumption) via a malformed DCP ETSI packet that triggers an infinite loop. Scope: local bookworm: resolved (fixed in 0.99.6pre1-1) bullseye: resolved (fixed in 0.99.6pre1-1) forky: resolved (fixed in 0.99.6pre1-1) sid: resolved (fixed in 0.99.6pre1-1) trixie: resolved (fixed in 0.99.6pre
debian
CVE-2023-2856P4MEDIUMCVSS 5.3fixed in wireshark 4.0.6-1~deb12u1 (bookworm)2023
CVE-2023-2856 [MEDIUM] CVE-2023-2856: wireshark - VMS TCPIPtrace file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13... VMS TCPIPtrace file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file Scope: local bookworm: resolved (fixed in 4.0.6-1~deb12u1) bullseye: resolved (fixed in 3.4.16-0+deb11u1) forky: resolved (fixed in 4.0.6-1) sid: resolved (fixed in 4.0.6-1) trixie: resolved (fixed in 4.0.6-1)
debian
CVE-2023-2858P4MEDIUMCVSS 5.3fixed in wireshark 4.0.6-1~deb12u1 (bookworm)2023
CVE-2023-2858 [MEDIUM] CVE-2023-2858: wireshark - NetScaler file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allo... NetScaler file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file Scope: local bookworm: resolved (fixed in 4.0.6-1~deb12u1) bullseye: resolved (fixed in 3.4.16-0+deb11u1) forky: resolved (fixed in 4.0.6-1) sid: resolved (fixed in 4.0.6-1) trixie: resolved (fixed in 4.0.6-1)
debian
CVE-2023-2952P4MEDIUMCVSS 5.3fixed in wireshark 4.0.6-1~deb12u1 (bookworm)2023
CVE-2023-2952 [MEDIUM] CVE-2023-2952: wireshark - XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allo... XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file Scope: local bookworm: resolved (fixed in 4.0.6-1~deb12u1) bullseye: resolved (fixed in 3.4.16-0+deb11u1) forky: resolved (fixed in 4.0.6-1) sid: resolved (fixed in 4.0.6-1) trixie: resolved (fixed in 4.0.6-1)
debian
CVE-2026-0962P4LOWCVSS 5.3fixed in wireshark 4.6.3-1 (forky)2026
CVE-2026-0962 [MEDIUM] CVE-2026-0962: wireshark - SOME/IP-SD protocol dissector crash in Wireshark 4.6.0 to 4.6.2 and 4.4.0 to 4.4... SOME/IP-SD protocol dissector crash in Wireshark 4.6.0 to 4.6.2 and 4.4.0 to 4.4.12 allows denial of service Scope: local bookworm: resolved bullseye: resolved forky: resolved (fixed in 4.6.3-1) sid: resolved (fixed in 4.6.3-1) trixie: resolved (fixed in 4.4.13-0+deb13u1)
debian
CVE-2020-17498P4MEDIUMCVSS 6.5fixed in wireshark 3.2.6-1 (bookworm)2020
CVE-2020-17498 [MEDIUM] CVE-2020-17498: wireshark - In Wireshark 3.2.0 to 3.2.5, the Kafka protocol dissector could crash. This was ... In Wireshark 3.2.0 to 3.2.5, the Kafka protocol dissector could crash. This was addressed in epan/dissectors/packet-kafka.c by avoiding a double free during LZ4 decompression. Scope: local bookworm: resolved (fixed in 3.2.6-1) bullseye: resolved (fixed in 3.2.6-1) forky: resolved (fixed in 3.2.6-1) sid: resolved (fixed in 3.2.6-1) trixie: resolved (fixed in 3.2.
debian
Debian Wireshark vulnerabilities | cvebase