Vulnerabilities (CVE)

Filtered by vendor Wireshark Subscribe
Total 685 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-3393 1 Wireshark 1 Wireshark 2025-04-09 5.0 MEDIUM N/A
Off-by-one error in the DHCP/BOOTP dissector in Wireshark before 0.99.6 allows remote attackers to cause a denial of service (crash) via crafted DHCP-over-DOCSIS packets.
CVE-2007-6438 1 Wireshark 1 Wireshark 2025-04-09 5.0 MEDIUM N/A
Unspecified vulnerability in the SMB dissector in Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial of service via unknown vectors. NOTE: this identifier originally included MP3 and NCP, but those issues are already covered by CVE-2007-6111.
CVE-2006-5595 1 Wireshark 1 Wireshark 2025-04-09 5.0 MEDIUM N/A
Unspecified vulnerability in the AirPcap support in Wireshark (formerly Ethereal) 0.99.3 has unspecified attack vectors related to WEP key parsing.
CVE-2009-2561 1 Wireshark 1 Wireshark 2025-04-09 5.0 MEDIUM N/A
Unspecified vulnerability in the sFlow dissector in Wireshark 1.2.0 allows remote attackers to cause a denial of service (CPU and memory consumption) via unspecified vectors.
CVE-2008-3140 1 Wireshark 1 Wireshark 2025-04-09 5.0 MEDIUM N/A
The syslog dissector in Wireshark (formerly Ethereal) 1.0.0 allows remote attackers to cause a denial of service (application crash) via unknown vectors, possibly related to an "incomplete SS7 MSU syslog encapsulated packet."
CVE-2008-1070 1 Wireshark 1 Wireshark 2025-04-09 5.0 MEDIUM N/A
The SCTP dissector in Wireshark (formerly Ethereal) 0.99.5 through 0.99.7 allows remote attackers to cause a denial of service (crash) via a malformed packet.
CVE-2008-1562 1 Wireshark 1 Wireshark 2025-04-09 5.0 MEDIUM N/A
The LDAP dissector in Wireshark (formerly Ethereal) 0.99.2 through 0.99.8 allows remote attackers to cause a denial of service (application crash) via a malformed packet, a different vulnerability than CVE-2006-5740.
CVE-2009-2562 1 Wireshark 1 Wireshark 2025-04-09 5.0 MEDIUM N/A
Unspecified vulnerability in the AFS dissector in Wireshark 0.9.2 through 1.2.0 allows remote attackers to cause a denial of service (crash) via unknown vectors.
CVE-2009-3243 2 Microsoft, Wireshark 2 Windows, Wireshark 2025-04-09 5.0 MEDIUM N/A
Unspecified vulnerability in the TLS dissector in Wireshark 1.2.0 and 1.2.1, when running on Windows, allows remote attackers to cause a denial of service (application crash) via unknown vectors related to TLS 1.2 conversations.
CVE-2007-0459 1 Wireshark 1 Wireshark 2025-04-09 5.0 MEDIUM N/A
packet-tcp.c in the TCP dissector in Wireshark (formerly Ethereal) 0.99.2 through 0.99.4 allows remote attackers to cause a denial of service (application crash or hang) via fragmented HTTP packets.
CVE-2007-6112 1 Wireshark 1 Wireshark 2025-04-09 10.0 HIGH N/A
Buffer overflow in the PPP dissector Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.
CVE-2007-6121 2 Ethereal Group, Wireshark 2 Ethereal, Wireshark 2025-04-09 5.0 MEDIUM N/A
Wireshark (formerly Ethereal) 0.8.16 to 0.99.6 allows remote attackers to cause a denial of service (crash) via a malformed RPC Portmap packet.
CVE-2008-6472 1 Wireshark 1 Wireshark 2025-04-09 4.3 MEDIUM N/A
The WLCCP dissector in Wireshark 0.99.7 through 1.0.4 allows remote attackers to cause a denial of service (infinite loop) via unspecified vectors.
CVE-2008-4682 1 Wireshark 1 Wireshark 2025-04-09 5.0 MEDIUM N/A
wtap.c in Wireshark 0.99.7 through 1.0.3 allows remote attackers to cause a denial of service (application abort) via a malformed Tamos CommView capture file (aka .ncf file) with an "unknown/unexpected packet type" that triggers a failed assertion.
CVE-2008-3145 1 Wireshark 1 Wireshark 2025-04-09 5.0 MEDIUM N/A
The fragment_add_work function in epan/reassemble.c in Wireshark 0.8.19 through 1.0.1 allows remote attackers to cause a denial of service (crash) via a series of fragmented packets with non-sequential fragmentation offset values, which lead to a buffer over-read.
CVE-2009-1268 1 Wireshark 1 Wireshark 2025-04-09 4.3 MEDIUM N/A
The Check Point High-Availability Protocol (CPHAP) dissector in Wireshark 0.9.6 through 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted FWHA_MY_STATE packet.
CVE-2008-3932 1 Wireshark 1 Wireshark 2025-04-09 5.0 MEDIUM N/A
Wireshark (formerly Ethereal) 0.9.7 through 1.0.2 allows attackers to cause a denial of service (hang) via a crafted NCP packet that triggers an infinite loop.
CVE-2007-6439 1 Wireshark 1 Wireshark 2025-04-09 6.1 MEDIUM N/A
Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial of service (infinite or large loop) via the (1) IPv6 or (2) USB dissector, which can trigger resource consumption or a crash. NOTE: this identifier originally included Firebird/Interbase, but it is already covered by CVE-2007-6116. The DCP ETSI issue is already covered by CVE-2007-6119.
CVE-2008-1072 1 Wireshark 1 Wireshark 2025-04-09 4.7 MEDIUM N/A
The TFTP dissector in Wireshark (formerly Ethereal) 0.6.0 through 0.99.7, when running on Ubuntu 7.10, allows remote attackers to cause a denial of service (crash or memory consumption) via a malformed packet, possibly related to a Cairo library bug.
CVE-2007-0458 1 Wireshark 1 Wireshark 2025-04-09 4.3 MEDIUM N/A
Unspecified vulnerability in the HTTP dissector in Wireshark (formerly Ethereal) 0.99.3 and 0.99.4 allows remote attackers to cause a denial of service (application crash) via unspecified vectors, a different issue than CVE-2006-5468.