cbcvebase.

Debian Wireshark vulnerabilities

668 known vulnerabilities affecting debian/wireshark.

Total CVEs
668
CISA KEV
0
Public exploits
50
Exploited in wild
0
Severity breakdown
CRITICAL8HIGH129MEDIUM276LOW255

Vulnerabilities

Page 4 of 34
CVE-2018-9264P3HIGHCVSS 7.5fixed in wireshark 2.4.6-1 (bookworm)2018
CVE-2018-9264 [HIGH] CVE-2018-9264: wireshark - In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the ADB dissector could crash w... In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the ADB dissector could crash with a heap-based buffer overflow. This was addressed in epan/dissectors/packet-adb.c by checking for a length inconsistency. Scope: local bookworm: resolved (fixed in 2.4.6-1) bullseye: resolved (fixed in 2.4.6-1) forky: resolved (fixed in 2.4.6-1) sid: resolved (fixed in 2.4.6-1) trixie
debian
CVE-2006-3628P3HIGHCVSS 10.0fixed in wireshark 0.99.2-1 (bookworm)2006
CVE-2006-3628 [CRITICAL] CVE-2006-3628: wireshark - Multiple format string vulnerabilities in Wireshark (aka Ethereal) 0.10.x to 0.9... Multiple format string vulnerabilities in Wireshark (aka Ethereal) 0.10.x to 0.99.0 allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) ANSI MAP, (2) Checkpoint FW-1, (3) MQ, (4) XML, and (5) NTP dissectors. Scope: local bookworm: resolved (fixed in 0.99.2-1) bullseye: resolved (fixed in 0.99.2-1) forky: resolved (
debian
CVE-2012-1593P4LOWCVSS 3.3PoCfixed in wireshark 1.6.6-1 (bookworm)2012
CVE-2012-1593 [LOW] CVE-2012-1593: wireshark - epan/dissectors/packet-ansi_a.c in the ANSI A dissector in Wireshark 1.4.x befor... epan/dissectors/packet-ansi_a.c in the ANSI A dissector in Wireshark 1.4.x before 1.4.12 and 1.6.x before 1.6.6 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a malformed packet. Scope: local bookworm: resolved (fixed in 1.6.6-1) bullseye: resolved (fixed in 1.6.6-1) forky: resolved (fixed in 1.6.6-1) sid: re
debian
CVE-2019-10896P3LOWCVSS 7.5fixed in wireshark 2.6.8-1 (bookworm)2019
CVE-2019-10896 [HIGH] CVE-2019-10896: wireshark - In Wireshark 2.4.0 to 2.4.13, 2.6.0 to 2.6.7, and 3.0.0, the DOF dissector could... In Wireshark 2.4.0 to 2.4.13, 2.6.0 to 2.6.7, and 3.0.0, the DOF dissector could crash. This was addressed in epan/dissectors/packet-dof.c by properly handling generated IID and OID bytes. Scope: local bookworm: resolved (fixed in 2.6.8-1) bullseye: resolved (fixed in 2.6.8-1) forky: resolved (fixed in 2.6.8-1) sid: resolved (fixed in 2.6.8-1) trixie: resolved (fi
debian
CVE-2019-10894P3LOWCVSS 7.5fixed in wireshark 2.6.8-1 (bookworm)2019
CVE-2019-10894 [HIGH] CVE-2019-10894: wireshark - In Wireshark 2.4.0 to 2.4.13, 2.6.0 to 2.6.7, and 3.0.0, the GSS-API dissector c... In Wireshark 2.4.0 to 2.4.13, 2.6.0 to 2.6.7, and 3.0.0, the GSS-API dissector could crash. This was addressed in epan/dissectors/packet-gssapi.c by ensuring that a valid dissector is called. Scope: local bookworm: resolved (fixed in 2.6.8-1) bullseye: resolved (fixed in 2.6.8-1) forky: resolved (fixed in 2.6.8-1) sid: resolved (fixed in 2.6.8-1) trixie: resolved
debian
CVE-2009-3829P3CRITICALCVSS 9.3fixed in wireshark 1.2.2-1 (bookworm)2009
CVE-2009-3829 [CRITICAL] CVE-2009-3829: wireshark - Integer overflow in wiretap/erf.c in Wireshark before 1.2.2 allows remote attack... Integer overflow in wiretap/erf.c in Wireshark before 1.2.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted erf file, related to an "unsigned integer wrap vulnerability." Scope: local bookworm: resolved (fixed in 1.2.2-1) bullseye: resolved (fixed in 1.2.2-1) forky: resolved (fixed in 1.2.2-1) sid:
debian
CVE-2008-3146P3MEDIUMCVSS 10.0fixed in wireshark 1.0.3-1 (bookworm)2008
CVE-2008-3146 [CRITICAL] CVE-2008-3146: wireshark - Multiple buffer overflows in packet_ncp2222.inc in Wireshark (formerly Ethereal)... Multiple buffer overflows in packet_ncp2222.inc in Wireshark (formerly Ethereal) 0.9.7 through 1.0.2 allow attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted NCP packet that causes an invalid pointer to be used. Scope: local bookworm: resolved (fixed in 1.0.3-1) bullseye: resolved (fixed in 1.0.3-1) forky
debian
CVE-2020-25866P3HIGHCVSS 7.5fixed in wireshark 3.2.7-1 (bookworm)2020
CVE-2020-25866 [HIGH] CVE-2020-25866: wireshark - In Wireshark 3.2.0 to 3.2.6 and 3.0.0 to 3.0.13, the BLIP protocol dissector has... In Wireshark 3.2.0 to 3.2.6 and 3.0.0 to 3.0.13, the BLIP protocol dissector has a NULL pointer dereference because a buffer was sized for compressed (not uncompressed) messages. This was addressed in epan/dissectors/packet-blip.c by allowing reasonable compression ratios and rejecting ZIP bombs. Scope: local bookworm: resolved (fixed in 3.2.7-1) bullseye: resolve
debian
CVE-2011-0024P3CRITICALCVSS 9.3fixed in wireshark 1.2-0-1 (bookworm)2011
CVE-2011-0024 [CRITICAL] CVE-2011-0024: wireshark - Heap-based buffer overflow in wiretap/pcapng.c in Wireshark before 1.2 allows re... Heap-based buffer overflow in wiretap/pcapng.c in Wireshark before 1.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted capture file. Scope: local bookworm: resolved (fixed in 1.2-0-1) bullseye: resolved (fixed in 1.2-0-1) forky: resolved (fixed in 1.2-0-1) sid: resolved (fixed in 1.2-0-1)
debian
CVE-2023-1992P3MEDIUMCVSS 6.3fixed in wireshark 4.0.6-1~deb12u1 (bookworm)2023
CVE-2023-1992 [MEDIUM] CVE-2023-1992: wireshark - RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows ... RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file Scope: local bookworm: resolved (fixed in 4.0.6-1~deb12u1) bullseye: resolved (fixed in 3.4.16-0+deb11u1) forky: resolved (fixed in 4.0.6-1) sid: resolved (fixed in 4.0.6-1) trixie: resolved (fixed in 4.0.6-1)
debian
CVE-2006-3632P3HIGHCVSS 10.0fixed in wireshark 0.99.2-1 (bookworm)2006
CVE-2006-3632 [CRITICAL] CVE-2006-3632: wireshark - Buffer overflow in Wireshark (aka Ethereal) 0.8.16 to 0.99.0 allows remote attac... Buffer overflow in Wireshark (aka Ethereal) 0.8.16 to 0.99.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code via the NFS dissector. Scope: local bookworm: resolved (fixed in 0.99.2-1) bullseye: resolved (fixed in 0.99.2-1) forky: resolved (fixed in 0.99.2-1) sid: resolved (fixed in 0.99.2-1) trixie: resolved (fixed in 0.9
debian
CVE-2019-10899P3LOWCVSS 7.5fixed in wireshark 2.6.8-1 (bookworm)2019
CVE-2019-10899 [HIGH] CVE-2019-10899: wireshark - In Wireshark 2.4.0 to 2.4.13, 2.6.0 to 2.6.7, and 3.0.0, the SRVLOC dissector co... In Wireshark 2.4.0 to 2.4.13, 2.6.0 to 2.6.7, and 3.0.0, the SRVLOC dissector could crash. This was addressed in epan/dissectors/packet-srvloc.c by preventing a heap-based buffer under-read. Scope: local bookworm: resolved (fixed in 2.6.8-1) bullseye: resolved (fixed in 2.6.8-1) forky: resolved (fixed in 2.6.8-1) sid: resolved (fixed in 2.6.8-1) trixie: resolved (
debian
CVE-2021-39928P3HIGHCVSS 7.5fixed in wireshark 3.6.0-1 (bookworm)2021
CVE-2021-39928 [HIGH] CVE-2021-39928: wireshark - NULL pointer exception in the IEEE 802.11 dissector in Wireshark 3.4.0 to 3.4.9 ... NULL pointer exception in the IEEE 802.11 dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file Scope: local bookworm: resolved (fixed in 3.6.0-1) bullseye: resolved (fixed in 3.4.10-0+deb11u1) forky: resolved (fixed in 3.6.0-1) sid: resolved (fixed in 3.6.0-1) trixie: resolved (fixed in 3.6
debian
CVE-2020-25863P3HIGHCVSS 7.5fixed in wireshark 3.2.7-1 (bookworm)2020
CVE-2020-25863 [HIGH] CVE-2020-25863: wireshark - In Wireshark 3.2.0 to 3.2.6, 3.0.0 to 3.0.13, and 2.6.0 to 2.6.20, the MIME Mult... In Wireshark 3.2.0 to 3.2.6, 3.0.0 to 3.0.13, and 2.6.0 to 2.6.20, the MIME Multipart dissector could crash. This was addressed in epan/dissectors/packet-multipart.c by correcting the deallocation of invalid MIME parts. Scope: local bookworm: resolved (fixed in 3.2.7-1) bullseye: resolved (fixed in 3.2.7-1) forky: resolved (fixed in 3.2.7-1) sid: resolved (fixed i
debian
CVE-2010-2994P3HIGHCVSS 8.3fixed in wireshark 1.2.10-1 (bookworm)2010
CVE-2010-2994 [HIGH] CVE-2010-2994: wireshark - Stack-based buffer overflow in the ASN.1 BER dissector in Wireshark 0.10.13 thro... Stack-based buffer overflow in the ASN.1 BER dissector in Wireshark 0.10.13 through 1.0.14 and 1.2.0 through 1.2.9 has unknown impact and remote attack vectors. NOTE: this issue exists because of a CVE-2010-2284 regression. Scope: local bookworm: resolved (fixed in 1.2.10-1) bullseye: resolved (fixed in 1.2.10-1) forky: resolved (fixed in 1.2.10-1) sid: resolved (fi
debian
CVE-2012-2392P4LOWCVSS 3.3PoCfixed in wireshark 1.6.8-1 (bookworm)2012
CVE-2012-2392 [LOW] CVE-2012-2392: wireshark - Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 allows remote attackers to ... Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 allows remote attackers to cause a denial of service (infinite loop) via vectors related to the (1) ANSI MAP, (2) ASF, (3) IEEE 802.11, (4) IEEE 802.3, and (5) LTP dissectors. Scope: local bookworm: resolved (fixed in 1.6.8-1) bullseye: resolved (fixed in 1.6.8-1) forky: resolved (fixed in 1.6.8-1) sid: resolved (f
debian
CVE-2021-4185P3HIGHCVSS 7.5fixed in wireshark 3.6.2-1 (bookworm)2021
CVE-2021-4185 [HIGH] CVE-2021-4185: wireshark - Infinite loop in the RTMPT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allo... Infinite loop in the RTMPT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file Scope: local bookworm: resolved (fixed in 3.6.2-1) bullseye: resolved (fixed in 3.4.16-0+deb11u1) forky: resolved (fixed in 3.6.2-1) sid: resolved (fixed in 3.6.2-1) trixie: resolved (fixed in 3.6.2-1)
debian
CVE-2021-4184P3HIGHCVSS 7.5fixed in wireshark 3.6.2-1 (bookworm)2021
CVE-2021-4184 [HIGH] CVE-2021-4184: wireshark - Infinite loop in the BitTorrent DHT dissector in Wireshark 3.6.0 and 3.4.0 to 3.... Infinite loop in the BitTorrent DHT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file Scope: local bookworm: resolved (fixed in 3.6.2-1) bullseye: resolved (fixed in 3.4.16-0+deb11u1) forky: resolved (fixed in 3.6.2-1) sid: resolved (fixed in 3.6.2-1) trixie: resolved (fixed in 3.6.2-1)
debian
CVE-2021-4181P3HIGHCVSS 7.5fixed in wireshark 3.6.2-1 (bookworm)2021
CVE-2021-4181 [HIGH] CVE-2021-4181: wireshark - Crash in the Sysdig Event dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allow... Crash in the Sysdig Event dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file Scope: local bookworm: resolved (fixed in 3.6.2-1) bullseye: resolved (fixed in 3.4.16-0+deb11u1) forky: resolved (fixed in 3.6.2-1) sid: resolved (fixed in 3.6.2-1) trixie: resolved (fixed in 3.6.2-1)
debian
CVE-2021-4190P3HIGHCVSS 7.5fixed in wireshark 3.6.2-1 (bookworm)2021
CVE-2021-4190 [HIGH] CVE-2021-4190: wireshark - Large loop in the Kafka dissector in Wireshark 3.6.0 allows denial of service vi... Large loop in the Kafka dissector in Wireshark 3.6.0 allows denial of service via packet injection or crafted capture file Scope: local bookworm: resolved (fixed in 3.6.2-1) bullseye: resolved (fixed in 3.4.16-0+deb11u1) forky: resolved (fixed in 3.6.2-1) sid: resolved (fixed in 3.6.2-1) trixie: resolved (fixed in 3.6.2-1)
debian
Debian Wireshark vulnerabilities | cvebase