cbcvebase.

Debian Wireshark vulnerabilities

668 known vulnerabilities affecting debian/wireshark.

Total CVEs
668
CISA KEV
0
Public exploits
50
Exploited in wild
0
Severity breakdown
CRITICAL8HIGH129MEDIUM276LOW255

Vulnerabilities

Page 31 of 34
CVE-2006-4330P4MEDIUMCVSS 4.3fixed in wireshark 0.99.2-5 (bookworm)2006
CVE-2006-4330 [MEDIUM] CVE-2006-4330: wireshark - Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal)... Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal) 0.99.2 allows remote attackers to cause a denial of service (crash) via unspecified vectors. Scope: local bookworm: resolved (fixed in 0.99.2-5) bullseye: resolved (fixed in 0.99.2-5) forky: resolved (fixed in 0.99.2-5) sid: resolved (fixed in 0.99.2-5) trixie: resolved (fixed in 0.99
debian
CVE-2009-3551P4LOWCVSS 5.0fixed in wireshark 1.2.3-1 (bookworm)2009
CVE-2009-3551 [MEDIUM] CVE-2009-3551: wireshark - Off-by-one error in the dissect_negprot_response function in packet-smb.c in the... Off-by-one error in the dissect_negprot_response function in packet-smb.c in the SMB dissector in Wireshark 1.2.0 through 1.2.2 allows remote attackers to cause a denial of service (application crash) via a file that records a malformed packet trace. NOTE: some of these details are obtained from third party information. Scope: local bookworm: resolved (fixed in 1.
debian
CVE-2011-1958P4LOWCVSS 4.3fixed in wireshark 1.6.0-1 (bookworm)2011
CVE-2011-1958 [MEDIUM] CVE-2011-1958: wireshark - Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows user-assisted remote... Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted Diameter dictionary file. Scope: local bookworm: resolved (fixed in 1.6.0-1) bullseye: resolved (fixed in 1.6.0-1) forky: resolved (fixed in 1.6.0-1) sid: resolved (fixed in 1.6.0-1)
debian
CVE-2008-4680P4LOWCVSS 4.3fixed in wireshark 1.0.4-1 (bookworm)2008
CVE-2008-4680 [MEDIUM] CVE-2008-4680: wireshark - packet-usb.c in the USB dissector in Wireshark 0.99.7 through 1.0.3 allows remot... packet-usb.c in the USB dissector in Wireshark 0.99.7 through 1.0.3 allows remote attackers to cause a denial of service (application crash or abort) via a malformed USB Request Block (URB). Scope: local bookworm: resolved (fixed in 1.0.4-1) bullseye: resolved (fixed in 1.0.4-1) forky: resolved (fixed in 1.0.4-1) sid: resolved (fixed in 1.0.4-1) trixie: resolved (
debian
CVE-2011-2174P4MEDIUMCVSS 4.3fixed in wireshark 1.6.0-1 (bookworm)2011
CVE-2011-2174 [MEDIUM] CVE-2011-2174: wireshark - Double free vulnerability in the tvb_uncompress function in epan/tvbuff.c in Wir... Double free vulnerability in the tvb_uncompress function in epan/tvbuff.c in Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows remote attackers to cause a denial of service (application crash) via a packet with malformed data that uses zlib compression. Scope: local bookworm: resolved (fixed in 1.6.0-1) bullseye: resolved (fixed in 1.6.0-1) forky: resolv
debian
CVE-2012-0068P4MEDIUMCVSS 4.3fixed in wireshark 1.6.5-1 (bookworm)2012
CVE-2012-0068 [MEDIUM] CVE-2012-0068: wireshark - The lanalyzer_read function in wiretap/lanalyzer.c in Wireshark 1.4.x before 1.4... The lanalyzer_read function in wiretap/lanalyzer.c in Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 allows remote attackers to cause a denial of service (application crash) via a Novell capture file containing a record that is too small. Scope: local bookworm: resolved (fixed in 1.6.5-1) bullseye: resolved (fixed in 1.6.5-1) forky: resolved (fixed in 1.6.5-
debian
CVE-2012-4296P4LOWCVSS 3.3fixed in wireshark 1.8.2-1 (bookworm)2012
CVE-2012-4296 [LOW] CVE-2012-4296: wireshark - Buffer overflow in epan/dissectors/packet-rtps2.c in the RTPS2 dissector in Wire... Buffer overflow in epan/dissectors/packet-rtps2.c in the RTPS2 dissector in Wireshark 1.4.x before 1.4.15, 1.6.x before 1.6.10, and 1.8.x before 1.8.2 allows remote attackers to cause a denial of service (CPU consumption) via a malformed packet. Scope: local bookworm: resolved (fixed in 1.8.2-1) bullseye: resolved (fixed in 1.8.2-1) forky: resolved (fixed in 1.8.2-1)
debian
CVE-2006-5595P4MEDIUMCVSS 5.0fixed in wireshark 0.99.4-1 (bookworm)2006
CVE-2006-5595 [MEDIUM] CVE-2006-5595: wireshark - Unspecified vulnerability in the AirPcap support in Wireshark (formerly Ethereal... Unspecified vulnerability in the AirPcap support in Wireshark (formerly Ethereal) 0.99.3 has unspecified attack vectors related to WEP key parsing. Scope: local bookworm: resolved (fixed in 0.99.4-1) bullseye: resolved (fixed in 0.99.4-1) forky: resolved (fixed in 0.99.4-1) sid: resolved (fixed in 0.99.4-1) trixie: resolved (fixed in 0.99.4-1)
debian
CVE-2009-3550P4LOWCVSS 4.3fixed in wireshark 1.2.3-1 (bookworm)2009
CVE-2009-3550 [MEDIUM] CVE-2009-3550: wireshark - The DCERPC/NT dissector in Wireshark 0.10.10 through 1.0.9 and 1.2.0 through 1.2... The DCERPC/NT dissector in Wireshark 0.10.10 through 1.0.9 and 1.2.0 through 1.2.2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a file that records a malformed packet trace. NOTE: some of these details are obtained from third party information. Scope: local bookworm: resolved (fixed in 1.2.3-1) bullseye:
debian
CVE-2008-1072P4LOWCVSS 4.7fixed in wireshark 0.99.8-1 (bookworm)2008
CVE-2008-1072 [MEDIUM] CVE-2008-1072: wireshark - The TFTP dissector in Wireshark (formerly Ethereal) 0.6.0 through 0.99.7, when r... The TFTP dissector in Wireshark (formerly Ethereal) 0.6.0 through 0.99.7, when running on Ubuntu 7.10, allows remote attackers to cause a denial of service (crash or memory consumption) via a malformed packet, possibly related to a Cairo library bug. Scope: local bookworm: resolved (fixed in 0.99.8-1) bullseye: resolved (fixed in 0.99.8-1) forky: resolved (fixed i
debian
CVE-2010-1455P4LOWCVSS 4.3fixed in wireshark 1.2.8-1 (bookworm)2010
CVE-2010-1455 [MEDIUM] CVE-2010-1455: wireshark - The DOCSIS dissector in Wireshark 0.9.6 through 1.0.12 and 1.2.0 through 1.2.7 a... The DOCSIS dissector in Wireshark 0.9.6 through 1.0.12 and 1.2.0 through 1.2.7 allows user-assisted remote attackers to cause a denial of service (application crash) via a malformed packet trace file. Scope: local bookworm: resolved (fixed in 1.2.8-1) bullseye: resolved (fixed in 1.2.8-1) forky: resolved (fixed in 1.2.8-1) sid: resolved (fixed in 1.2.8-1) trixie:
debian
CVE-2007-6451P4MEDIUMCVSS 4.3fixed in wireshark 0.99.7-1 (bookworm)2007
CVE-2007-6451 [MEDIUM] CVE-2007-6451: wireshark - Unspecified vulnerability in the CIP dissector in Wireshark (formerly Ethereal) ... Unspecified vulnerability in the CIP dissector in Wireshark (formerly Ethereal) 0.9.14 to 0.99.6 allows remote attackers to cause a denial of service (crash) via unknown vectors that trigger allocation of large amounts of memory. Scope: local bookworm: resolved (fixed in 0.99.7-1) bullseye: resolved (fixed in 0.99.7-1) forky: resolved (fixed in 0.99.7-1) sid: reso
debian
CVE-2012-1594P4LOWCVSS 3.3fixed in wireshark 1.6.6-1 (bookworm)2012
CVE-2012-1594 [LOW] CVE-2012-1594: wireshark - epan/dissectors/packet-ieee80211.c in the IEEE 802.11 dissector in Wireshark 1.6... epan/dissectors/packet-ieee80211.c in the IEEE 802.11 dissector in Wireshark 1.6.x before 1.6.6 allows remote attackers to cause a denial of service (infinite loop) via a crafted packet. Scope: local bookworm: resolved (fixed in 1.6.6-1) bullseye: resolved (fixed in 1.6.6-1) forky: resolved (fixed in 1.6.6-1) sid: resolved (fixed in 1.6.6-1) trixie: resolved (fixed i
debian
CVE-2007-0458P4LOWCVSS 5.0fixed in wireshark 0.99.4-5 (bookworm)2007
CVE-2007-0458 [MEDIUM] CVE-2007-0458: wireshark - Unspecified vulnerability in the HTTP dissector in Wireshark (formerly Ethereal)... Unspecified vulnerability in the HTTP dissector in Wireshark (formerly Ethereal) 0.99.3 and 0.99.4 allows remote attackers to cause a denial of service (application crash) via unspecified vectors, a different issue than CVE-2006-5468. Scope: local bookworm: resolved (fixed in 0.99.4-5) bullseye: resolved (fixed in 0.99.4-5) forky: resolved (fixed in 0.99.4-5) sid:
debian
CVE-2008-3137P4LOWCVSS 4.3fixed in wireshark 1.0.1-1 (bookworm)2008
CVE-2008-3137 [MEDIUM] CVE-2008-3137: wireshark - The GSM SMS dissector in Wireshark (formerly Ethereal) 0.99.2 through 1.0.0 allo... The GSM SMS dissector in Wireshark (formerly Ethereal) 0.99.2 through 1.0.0 allows remote attackers to cause a denial of service (application crash) via unknown vectors. Scope: local bookworm: resolved (fixed in 1.0.1-1) bullseye: resolved (fixed in 1.0.1-1) forky: resolved (fixed in 1.0.1-1) sid: resolved (fixed in 1.0.1-1) trixie: resolved (fixed in 1.0.1-1)
debian
CVE-2008-4681P4LOWCVSS 4.3fixed in wireshark 1.0.4-1 (bookworm)2008
CVE-2008-4681 [MEDIUM] CVE-2008-4681: wireshark - Unspecified vulnerability in the Bluetooth RFCOMM dissector in Wireshark 0.99.7 ... Unspecified vulnerability in the Bluetooth RFCOMM dissector in Wireshark 0.99.7 through 1.0.3 allows remote attackers to cause a denial of service (application crash or abort) via unknown packets. Scope: local bookworm: resolved (fixed in 1.0.4-1) bullseye: resolved (fixed in 1.0.4-1) forky: resolved (fixed in 1.0.4-1) sid: resolved (fixed in 1.0.4-1) trixie: reso
debian
CVE-2007-0456P4LOWCVSS 4.3fixed in wireshark 0.99.4-5 (bookworm)2007
CVE-2007-0456 [MEDIUM] CVE-2007-0456: wireshark - Unspecified vulnerability in the LLT dissector in Wireshark (formerly Ethereal) ... Unspecified vulnerability in the LLT dissector in Wireshark (formerly Ethereal) 0.99.3 and 0.99.4 allows remote attackers to cause a denial of service (application crash) via unspecified vectors. Scope: local bookworm: resolved (fixed in 0.99.4-5) bullseye: resolved (fixed in 0.99.4-5) forky: resolved (fixed in 0.99.4-5) sid: resolved (fixed in 0.99.4-5) trixie: r
debian
CVE-2007-0457P4LOWCVSS 4.3fixed in wireshark 0.99.4-5 (bookworm)2007
CVE-2007-0457 [MEDIUM] CVE-2007-0457: wireshark - Unspecified vulnerability in the IEEE 802.11 dissector in Wireshark (formerly Et... Unspecified vulnerability in the IEEE 802.11 dissector in Wireshark (formerly Ethereal) 0.10.14 through 0.99.4 allows remote attackers to cause a denial of service (application crash) via unspecified vectors. Scope: local bookworm: resolved (fixed in 0.99.4-5) bullseye: resolved (fixed in 0.99.4-5) forky: resolved (fixed in 0.99.4-5) sid: resolved (fixed in 0.99.4
debian
CVE-2012-4292P4LOWCVSS 3.3fixed in wireshark 1.8.2-1 (bookworm)2012
CVE-2012-4292 [LOW] CVE-2012-4292: wireshark - The dissect_stun_message function in epan/dissectors/packet-stun.c in the STUN d... The dissect_stun_message function in epan/dissectors/packet-stun.c in the STUN dissector in Wireshark 1.4.x before 1.4.15, 1.6.x before 1.6.10, and 1.8.x before 1.8.2 does not properly interact with key-destruction behavior in a certain tree library, which allows remote attackers to cause a denial of service (application crash) via a malformed packet. Scope: local bo
debian
CVE-2012-4049P4LOWCVSS 2.9fixed in wireshark 1.8.2-1 (bookworm)2012
CVE-2012-4049 [LOW] CVE-2012-4049: wireshark - epan/dissectors/packet-nfs.c in the NFS dissector in Wireshark 1.4.x before 1.4.... epan/dissectors/packet-nfs.c in the NFS dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8.x before 1.8.1 allows remote attackers to cause a denial of service (loop and CPU consumption) via a crafted packet. Scope: local bookworm: resolved (fixed in 1.8.2-1) bullseye: resolved (fixed in 1.8.2-1) forky: resolved (fixed in 1.8.2-1) sid: resolved (f
debian
Debian Wireshark vulnerabilities | cvebase