cbcvebase.

Debian Wireshark vulnerabilities

668 known vulnerabilities affecting debian/wireshark.

Total CVEs
668
CISA KEV
0
Public exploits
50
Exploited in wild
0
Severity breakdown
CRITICAL8HIGH129MEDIUM276LOW255

Vulnerabilities

Page 28 of 34
CVE-2008-3932P4LOWCVSS 5.0fixed in wireshark 1.0.3-1 (bookworm)2008
CVE-2008-3932 [MEDIUM] CVE-2008-3932: wireshark - Wireshark (formerly Ethereal) 0.9.7 through 1.0.2 allows attackers to cause a de... Wireshark (formerly Ethereal) 0.9.7 through 1.0.2 allows attackers to cause a denial of service (hang) via a crafted NCP packet that triggers an infinite loop. Scope: local bookworm: resolved (fixed in 1.0.3-1) bullseye: resolved (fixed in 1.0.3-1) forky: resolved (fixed in 1.0.3-1) sid: resolved (fixed in 1.0.3-1) trixie: resolved (fixed in 1.0.3-1)
debian
CVE-2025-11626P4MEDIUMCVSS 5.5fixed in wireshark 3.4.16-0+deb11u2 (bullseye)2025
CVE-2025-11626 [MEDIUM] CVE-2025-11626: wireshark - MONGO dissector infinite loop in Wireshark 4.4.0 to 4.4.9 and 4.2.0 to 4.2.13 al... MONGO dissector infinite loop in Wireshark 4.4.0 to 4.4.9 and 4.2.0 to 4.2.13 allows denial of service Scope: local bookworm: open bullseye: resolved (fixed in 3.4.16-0+deb11u2) forky: resolved (fixed in 4.6.0-1) sid: resolved (fixed in 4.6.0-1) trixie: resolved (fixed in 4.4.13-0+deb13u1)
debian
CVE-2015-6246P4MEDIUMCVSS 4.3fixed in wireshark 1.12.7+g7fc8978-1 (bookworm)2015
CVE-2015-6246 [MEDIUM] CVE-2015-6246: wireshark - The dissect_wa_payload function in epan/dissectors/packet-waveagent.c in the Wav... The dissect_wa_payload function in epan/dissectors/packet-waveagent.c in the WaveAgent dissector in Wireshark 1.12.x before 1.12.7 mishandles large tag values, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. Scope: local bookworm: resolved (fixed in 1.12.7+g7fc8978-1) bullseye: resolved (fixed in 1.12.7+g7fc8978
debian
CVE-2013-4934P4MEDIUMCVSS 4.3fixed in wireshark 1.10.1-1 (bookworm)2013
CVE-2013-4934 [MEDIUM] CVE-2013-4934: wireshark - The netmon_open function in wiretap/netmon.c in the Netmon file parser in Wiresh... The netmon_open function in wiretap/netmon.c in the Netmon file parser in Wireshark 1.8.x before 1.8.9 and 1.10.x before 1.10.1 does not initialize certain structure members, which allows remote attackers to cause a denial of service (application crash) via a crafted packet-trace file. Scope: local bookworm: resolved (fixed in 1.10.1-1) bullseye: resolved (fixed i
debian
CVE-2015-6249P4MEDIUMCVSS 4.3fixed in wireshark 1.12.7+g7fc8978-1 (bookworm)2015
CVE-2015-6249 [MEDIUM] CVE-2015-6249: wireshark - The dissect_wccp2r1_address_table_info function in epan/dissectors/packet-wccp.c... The dissect_wccp2r1_address_table_info function in epan/dissectors/packet-wccp.c in the WCCP dissector in Wireshark 1.12.x before 1.12.7 does not prevent the conflicting use of a table for both IPv4 and IPv6 addresses, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. Scope: local bookworm: resolved (fixed in 1.12
debian
CVE-2023-3649P4MEDIUMCVSS 5.3fixed in wireshark 4.0.11-1~deb12u1 (bookworm)2023
CVE-2023-3649 [MEDIUM] CVE-2023-3649: wireshark - iSCSI dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via p... iSCSI dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file Scope: local bookworm: resolved (fixed in 4.0.11-1~deb12u1) bullseye: resolved (fixed in 3.4.16-0+deb11u1) forky: resolved (fixed in 4.0.7-1) sid: resolved (fixed in 4.0.7-1) trixie: resolved (fixed in 4.0.7-1)
debian
CVE-2011-2698P4LOWCVSS 4.3fixed in wireshark 1.6.1-1 (bookworm)2011
CVE-2011-2698 [MEDIUM] CVE-2011-2698: wireshark - Off-by-one error in the elem_cell_id_aux function in epan/dissectors/packet-ansi... Off-by-one error in the elem_cell_id_aux function in epan/dissectors/packet-ansi_a.c in the ANSI MAP dissector in Wireshark 1.4.x before 1.4.8 and 1.6.x before 1.6.1 allows remote attackers to cause a denial of service (infinite loop) via an invalid packet. Scope: local bookworm: resolved (fixed in 1.6.1-1) bullseye: resolved (fixed in 1.6.1-1) forky: resolved (fi
debian
CVE-2014-2907P4MEDIUMCVSS 4.3fixed in wireshark 1.10.7-1 (bookworm)2014
CVE-2014-2907 [MEDIUM] CVE-2014-2907: wireshark - The srtp_add_address function in epan/dissectors/packet-rtp.c in the RTP dissect... The srtp_add_address function in epan/dissectors/packet-rtp.c in the RTP dissector in Wireshark 1.10.x before 1.10.7 does not properly update SRTP conversation data, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. Scope: local bookworm: resolved (fixed in 1.10.7-1) bullseye: resolved (fixed in 1.10.7-1) forky: r
debian
CVE-2014-2282P4MEDIUMCVSS 4.3fixed in wireshark 1.10.6-1 (bookworm)2014
CVE-2014-2282 [MEDIUM] CVE-2014-2282: wireshark - The dissect_protocol_data_parameter function in epan/dissectors/packet-m3ua.c in... The dissect_protocol_data_parameter function in epan/dissectors/packet-m3ua.c in the M3UA dissector in Wireshark 1.10.x before 1.10.6 does not properly allocate memory, which allows remote attackers to cause a denial of service (application crash) via a crafted SS7 MTP3 packet. Scope: local bookworm: resolved (fixed in 1.10.6-1) bullseye: resolved (fixed in 1.10.6
debian
CVE-2013-5717P4MEDIUMCVSS 4.3fixed in wireshark 1.10.2-1 (bookworm)2013
CVE-2013-5717 [MEDIUM] CVE-2013-5717: wireshark - The Bluetooth HCI ACL dissector in Wireshark 1.10.x before 1.10.2 does not prope... The Bluetooth HCI ACL dissector in Wireshark 1.10.x before 1.10.2 does not properly maintain a certain free list, which allows remote attackers to cause a denial of service (application crash) via a crafted packet that is not properly handled by the wmem_block_alloc function in epan/wmem/wmem_allocator_block.c. Scope: local bookworm: resolved (fixed in 1.10.2-1) b
debian
CVE-2008-4684P4LOWCVSS 4.3fixed in wireshark 1.0.4-1 (bookworm)2008
CVE-2008-4684 [MEDIUM] CVE-2008-4684: wireshark - packet-frame in Wireshark 0.99.2 through 1.0.3 does not properly handle exceptio... packet-frame in Wireshark 0.99.2 through 1.0.3 does not properly handle exceptions thrown by post dissectors, which allows remote attackers to cause a denial of service (application crash) via a certain series of packets, as demonstrated by enabling the (1) PRP or (2) MATE post dissector. Scope: local bookworm: resolved (fixed in 1.0.4-1) bullseye: resolved (fixed
debian
CVE-2013-5718P4MEDIUMCVSS 4.3fixed in wireshark 1.10.2-1 (bookworm)2013
CVE-2013-5718 [MEDIUM] CVE-2013-5718: wireshark - The dissect_nbap_T_dCH_ID function in epan/dissectors/packet-nbap.c in the NBAP ... The dissect_nbap_T_dCH_ID function in epan/dissectors/packet-nbap.c in the NBAP dissector in Wireshark 1.8.x before 1.8.10 and 1.10.x before 1.10.2 does not restrict the dch_id value, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. Scope: local bookworm: resolved (fixed in 1.10.2-1) bullseye: resolved (fixed in
debian
CVE-2013-5721P4LOWCVSS 4.3fixed in wireshark 1.10.2-1 (bookworm)2013
CVE-2013-5721 [MEDIUM] CVE-2013-5721: wireshark - The dissect_mq_rr function in epan/dissectors/packet-mq.c in the MQ dissector in... The dissect_mq_rr function in epan/dissectors/packet-mq.c in the MQ dissector in Wireshark 1.8.x before 1.8.10 and 1.10.x before 1.10.2 does not properly determine when to enter a certain loop, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. Scope: local bookworm: resolved (fixed in 1.10.2-1) bullseye: resolved
debian
CVE-2011-3484P4MEDIUMCVSS 4.3fixed in wireshark 1.6.2-1 (bookworm)2011
CVE-2011-3484 [MEDIUM] CVE-2011-3484: wireshark - The unxorFrame function in epan/dissectors/packet-opensafety.c in the OpenSafety... The unxorFrame function in epan/dissectors/packet-opensafety.c in the OpenSafety dissector in Wireshark 1.6.x before 1.6.2 does not properly validate a certain frame size, which allows remote attackers to cause a denial of service (loop and application crash) via a malformed packet. Scope: local bookworm: resolved (fixed in 1.6.2-1) bullseye: resolved (fixed in 1.
debian
CVE-2022-4344P4MEDIUMCVSS 6.3fixed in wireshark 4.0.2-1 (bookworm)2022
CVE-2022-4344 [MEDIUM] CVE-2022-4344: wireshark - Memory exhaustion in the Kafka protocol dissector in Wireshark 4.0.0 to 4.0.1 an... Memory exhaustion in the Kafka protocol dissector in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allows denial of service via packet injection or crafted capture file Scope: local bookworm: resolved (fixed in 4.0.2-1) bullseye: resolved (fixed in 3.4.16-0+deb11u1) forky: resolved (fixed in 4.0.2-1) sid: resolved (fixed in 4.0.2-1) trixie: resolved (fixed in 4.0.2-
debian
CVE-2006-5468P4MEDIUMCVSS 5.0fixed in wireshark 0.99.4-1 (bookworm)2006
CVE-2006-5468 [MEDIUM] CVE-2006-5468: wireshark - Unspecified vulnerability in the HTTP dissector in Wireshark (formerly Ethereal)... Unspecified vulnerability in the HTTP dissector in Wireshark (formerly Ethereal) 0.99.3 allows remote attackers to cause a denial of service (crash) via unspecified vectors. Scope: local bookworm: resolved (fixed in 0.99.4-1) bullseye: resolved (fixed in 0.99.4-1) forky: resolved (fixed in 0.99.4-1) sid: resolved (fixed in 0.99.4-1) trixie: resolved (fixed in 0.99
debian
CVE-2018-19624P4MEDIUMCVSS 5.5fixed in wireshark 2.6.5-1 (bookworm)2018
CVE-2018-19624 [MEDIUM] CVE-2018-19624: wireshark - In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the PVFS dissector could crash.... In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the PVFS dissector could crash. This was addressed in epan/dissectors/packet-pvfs2.c by preventing a NULL pointer dereference. Scope: local bookworm: resolved (fixed in 2.6.5-1) bullseye: resolved (fixed in 2.6.5-1) forky: resolved (fixed in 2.6.5-1) sid: resolved (fixed in 2.6.5-1) trixie: resolved (fixed in 2.6.
debian
CVE-2019-5717P4LOWCVSS 5.5fixed in wireshark 2.6.6-1 (bookworm)2019
CVE-2019-5717 [MEDIUM] CVE-2019-5717: wireshark - In Wireshark 2.6.0 to 2.6.5 and 2.4.0 to 2.4.11, the P_MUL dissector could crash... In Wireshark 2.6.0 to 2.6.5 and 2.4.0 to 2.4.11, the P_MUL dissector could crash. This was addressed in epan/dissectors/packet-p_mul.c by rejecting the invalid sequence number of zero. Scope: local bookworm: resolved (fixed in 2.6.6-1) bullseye: resolved (fixed in 2.6.6-1) forky: resolved (fixed in 2.6.6-1) sid: resolved (fixed in 2.6.6-1) trixie: resolved (fixed
debian
CVE-2019-5716P4LOWCVSS 5.5fixed in wireshark 2.6.6-1 (bookworm)2019
CVE-2019-5716 [MEDIUM] CVE-2019-5716: wireshark - In Wireshark 2.6.0 to 2.6.5, the 6LoWPAN dissector could crash. This was address... In Wireshark 2.6.0 to 2.6.5, the 6LoWPAN dissector could crash. This was addressed in epan/dissectors/packet-6lowpan.c by avoiding use of a TVB before its creation. Scope: local bookworm: resolved (fixed in 2.6.6-1) bullseye: resolved (fixed in 2.6.6-1) forky: resolved (fixed in 2.6.6-1) sid: resolved (fixed in 2.6.6-1) trixie: resolved (fixed in 2.6.6-1)
debian
CVE-2018-19625P4MEDIUMCVSS 5.5fixed in wireshark 2.6.5-1 (bookworm)2018
CVE-2018-19625 [MEDIUM] CVE-2018-19625: wireshark - In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the dissection engine could cra... In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the dissection engine could crash. This was addressed in epan/tvbuff_composite.c by preventing a heap-based buffer over-read. Scope: local bookworm: resolved (fixed in 2.6.5-1) bullseye: resolved (fixed in 2.6.5-1) forky: resolved (fixed in 2.6.5-1) sid: resolved (fixed in 2.6.5-1) trixie: resolved (fixed in 2.6.5
debian
Debian Wireshark vulnerabilities | cvebase