VYPR

rpm package

opensuse/wireshark&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/wireshark&distro=openSUSE%20Tumbleweed

Vulnerabilities (581)

  • CVE-2021-39929HigNov 19, 2021
    affected < 3.4.10-1.1fixed 3.4.10-1.1

    Uncontrolled Recursion in the Bluetooth DHT dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file

  • CVE-2021-39926HigNov 19, 2021
    affected < 3.4.10-1.1fixed 3.4.10-1.1

    Buffer overflow in the Bluetooth HCI_ISO dissector in Wireshark 3.4.0 to 3.4.9 allows denial of service via packet injection or crafted capture file

  • CVE-2021-39925HigNov 19, 2021
    affected < 3.4.10-1.1fixed 3.4.10-1.1

    Buffer overflow in the Bluetooth SDP dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file

  • CVE-2021-39924HigNov 19, 2021
    affected < 3.4.10-1.1fixed 3.4.10-1.1

    Large loop in the Bluetooth DHT dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file

  • CVE-2021-39922HigNov 19, 2021
    affected < 3.4.10-1.1fixed 3.4.10-1.1

    Buffer overflow in the C12.22 dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file

  • CVE-2021-39921HigNov 19, 2021
    affected < 3.4.10-1.1fixed 3.4.10-1.1

    NULL pointer exception in the Modbus dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file

  • CVE-2021-39928HigNov 18, 2021
    affected < 3.4.10-1.1fixed 3.4.10-1.1

    NULL pointer exception in the IEEE 802.11 dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file

  • CVE-2021-39920HigNov 18, 2021
    affected < 3.4.10-1.1fixed 3.4.10-1.1

    NULL pointer exception in the IPPUSB dissector in Wireshark 3.4.0 to 3.4.9 allows denial of service via packet injection or crafted capture file

  • CVE-2021-22235HigJul 20, 2021
    affected < 3.4.8-1.2fixed 3.4.8-1.2

    Crash in DNP dissector in Wireshark 3.4.0 to 3.4.6 and 3.2.0 to 3.2.14 allows denial of service via packet injection or crafted capture file

  • CVE-2021-22207MedApr 23, 2021
    affected < 3.4.8-1.2fixed 3.4.8-1.2

    Excessive memory consumption in MS-WSP dissector in Wireshark 3.4.0 to 3.4.4 and 3.2.0 to 3.2.12 allows denial of service via packet injection or crafted capture file

  • CVE-2021-22191MedMar 15, 2021
    affected < 3.4.8-1.2fixed 3.4.8-1.2

    Improper URL handling in Wireshark 3.4.0 to 3.4.3 and 3.2.0 to 3.2.11 could allow remote code execution via via packet injection or crafted capture file.

  • CVE-2021-22174LowFeb 17, 2021
    affected < 3.4.8-1.2fixed 3.4.8-1.2

    Crash in USB HID dissector in Wireshark 3.4.0 to 3.4.2 allows denial of service via packet injection or crafted capture file

  • CVE-2021-22173LowFeb 17, 2021
    affected < 3.4.8-1.2fixed 3.4.8-1.2

    Memory leak in USB HID dissector in Wireshark 3.4.0 to 3.4.2 allows denial of service via packet injection or crafted capture file

  • CVE-2020-26422LowDec 21, 2020
    affected < 3.4.8-1.2fixed 3.4.8-1.2

    Buffer overflow in QUIC dissector in Wireshark 3.4.0 to 3.4.1 allows denial of service via packet injection or crafted capture file

  • CVE-2020-26421MedDec 11, 2020
    affected < 3.4.8-1.2fixed 3.4.8-1.2

    Crash in USB HID protocol dissector and possibly other dissectors in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.

  • CVE-2020-26420LowDec 11, 2020
    affected < 3.4.8-1.2fixed 3.4.8-1.2

    Memory leak in RTPS protocol dissector in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.

  • CVE-2020-26419LowDec 11, 2020
    affected < 3.4.8-1.2fixed 3.4.8-1.2

    Memory leak in the dissection engine in Wireshark 3.4.0 allows denial of service via packet injection or crafted capture file.

  • CVE-2020-26418LowDec 11, 2020
    affected < 3.4.8-1.2fixed 3.4.8-1.2

    Memory leak in Kafka protocol dissector in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.

  • CVE-2020-28030HigNov 2, 2020
    affected < 3.4.8-1.2fixed 3.4.8-1.2

    In Wireshark 3.2.0 to 3.2.7, the GQUIC dissector could crash. This was addressed in epan/dissectors/packet-gquic.c by correcting the implementation of offset advancement.

  • CVE-2020-26575HigOct 6, 2020
    affected < 3.4.8-1.2fixed 3.4.8-1.2

    In Wireshark through 3.2.7, the Facebook Zero Protocol (aka FBZERO) dissector could enter an infinite loop. This was addressed in epan/dissectors/packet-fbzero.c by correcting the implementation of offset advancement.

Page 9 of 30