rpm package
suse/wireshark&distro=SUSE Enterprise Storage 6
pkg:rpm/suse/wireshark&distro=SUSE%20Enterprise%20Storage%206
Vulnerabilities (28)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2023-0417 | — | < 3.6.11-150000.3.83.1 | 3.6.11-150000.3.83.1 | Jan 24, 2023 | Memory leak in the NFS dissector in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file | ||
| CVE-2023-0416 | — | < 3.6.11-150000.3.83.1 | 3.6.11-150000.3.83.1 | Jan 24, 2023 | GNW dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file | ||
| CVE-2023-0415 | — | < 3.6.11-150000.3.83.1 | 3.6.11-150000.3.83.1 | Jan 24, 2023 | iSCSI dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file | ||
| CVE-2023-0413 | — | < 3.6.11-150000.3.83.1 | 3.6.11-150000.3.83.1 | Jan 24, 2023 | Dissection engine bug in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file | ||
| CVE-2023-0412 | — | < 3.6.11-150000.3.83.1 | 3.6.11-150000.3.83.1 | Jan 24, 2023 | TIPC dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file | ||
| CVE-2023-0411 | — | < 3.6.11-150000.3.83.1 | 3.6.11-150000.3.83.1 | Jan 24, 2023 | Excessive loops in multiple dissectors in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file | ||
| CVE-2022-4345 | — | < 3.6.11-150000.3.83.1 | 3.6.11-150000.3.83.1 | Jan 12, 2023 | Infinite loops in the BPv6, OpenFlow, and Kafka protocol dissectors in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allows denial of service via packet injection or crafted capture file | ||
| CVE-2022-3725 | — | < 3.6.10-150000.3.78.1 | 3.6.10-150000.3.78.1 | Oct 27, 2022 | Crash in the OPUS protocol dissector in Wireshark 3.6.0 to 3.6.8 allows denial of service via packet injection or crafted capture file | ||
| CVE-2022-0585 | — | < 3.6.2-3.71.1 | 3.6.2-3.71.1 | Feb 18, 2022 | Large loops in multiple protocol dissectors in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allow denial of service via packet injection or crafted capture file | ||
| CVE-2022-0586 | — | < 3.6.2-3.71.1 | 3.6.2-3.71.1 | Feb 14, 2022 | Infinite loop in RTMPT protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file | ||
| CVE-2022-0583 | — | < 3.6.2-3.71.1 | 3.6.2-3.71.1 | Feb 14, 2022 | Crash in the PVFS protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file | ||
| CVE-2022-0582 | — | < 3.6.2-3.71.1 | 3.6.2-3.71.1 | Feb 14, 2022 | Unaligned access in the CSN.1 protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file | ||
| CVE-2022-0581 | — | < 3.6.2-3.71.1 | 3.6.2-3.71.1 | Feb 14, 2022 | Crash in the CMS protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file | ||
| CVE-2021-4190 | — | < 3.6.1-3.68.1 | 3.6.1-3.68.1 | Dec 30, 2021 | Large loop in the Kafka dissector in Wireshark 3.6.0 allows denial of service via packet injection or crafted capture file | ||
| CVE-2021-4185 | — | < 3.6.1-3.68.1 | 3.6.1-3.68.1 | Dec 30, 2021 | Infinite loop in the RTMPT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file | ||
| CVE-2021-4184 | — | < 3.6.1-3.68.1 | 3.6.1-3.68.1 | Dec 30, 2021 | Infinite loop in the BitTorrent DHT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file | ||
| CVE-2021-4183 | — | < 3.6.1-3.68.1 | 3.6.1-3.68.1 | Dec 30, 2021 | Crash in the pcapng file parser in Wireshark 3.6.0 allows denial of service via crafted capture file | ||
| CVE-2021-4182 | — | < 3.6.1-3.68.1 | 3.6.1-3.68.1 | Dec 30, 2021 | Crash in the RFC 7468 dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file | ||
| CVE-2021-4181 | — | < 3.6.1-3.68.1 | 3.6.1-3.68.1 | Dec 30, 2021 | Crash in the Sysdig Event dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file | ||
| CVE-2021-22207 | — | < 3.4.5-3.53.1 | 3.4.5-3.53.1 | Apr 23, 2021 | Excessive memory consumption in MS-WSP dissector in Wireshark 3.4.0 to 3.4.4 and 3.2.0 to 3.2.12 allows denial of service via packet injection or crafted capture file |
- CVE-2023-0417Jan 24, 2023affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1
Memory leak in the NFS dissector in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
- CVE-2023-0416Jan 24, 2023affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1
GNW dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
- CVE-2023-0415Jan 24, 2023affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1
iSCSI dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
- CVE-2023-0413Jan 24, 2023affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1
Dissection engine bug in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
- CVE-2023-0412Jan 24, 2023affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1
TIPC dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
- CVE-2023-0411Jan 24, 2023affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1
Excessive loops in multiple dissectors in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
- CVE-2022-4345Jan 12, 2023affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1
Infinite loops in the BPv6, OpenFlow, and Kafka protocol dissectors in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allows denial of service via packet injection or crafted capture file
- CVE-2022-3725Oct 27, 2022affected < 3.6.10-150000.3.78.1fixed 3.6.10-150000.3.78.1
Crash in the OPUS protocol dissector in Wireshark 3.6.0 to 3.6.8 allows denial of service via packet injection or crafted capture file
- CVE-2022-0585Feb 18, 2022affected < 3.6.2-3.71.1fixed 3.6.2-3.71.1
Large loops in multiple protocol dissectors in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allow denial of service via packet injection or crafted capture file
- CVE-2022-0586Feb 14, 2022affected < 3.6.2-3.71.1fixed 3.6.2-3.71.1
Infinite loop in RTMPT protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file
- CVE-2022-0583Feb 14, 2022affected < 3.6.2-3.71.1fixed 3.6.2-3.71.1
Crash in the PVFS protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file
- CVE-2022-0582Feb 14, 2022affected < 3.6.2-3.71.1fixed 3.6.2-3.71.1
Unaligned access in the CSN.1 protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file
- CVE-2022-0581Feb 14, 2022affected < 3.6.2-3.71.1fixed 3.6.2-3.71.1
Crash in the CMS protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file
- CVE-2021-4190Dec 30, 2021affected < 3.6.1-3.68.1fixed 3.6.1-3.68.1
Large loop in the Kafka dissector in Wireshark 3.6.0 allows denial of service via packet injection or crafted capture file
- CVE-2021-4185Dec 30, 2021affected < 3.6.1-3.68.1fixed 3.6.1-3.68.1
Infinite loop in the RTMPT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
- CVE-2021-4184Dec 30, 2021affected < 3.6.1-3.68.1fixed 3.6.1-3.68.1
Infinite loop in the BitTorrent DHT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
- CVE-2021-4183Dec 30, 2021affected < 3.6.1-3.68.1fixed 3.6.1-3.68.1
Crash in the pcapng file parser in Wireshark 3.6.0 allows denial of service via crafted capture file
- CVE-2021-4182Dec 30, 2021affected < 3.6.1-3.68.1fixed 3.6.1-3.68.1
Crash in the RFC 7468 dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
- CVE-2021-4181Dec 30, 2021affected < 3.6.1-3.68.1fixed 3.6.1-3.68.1
Crash in the Sysdig Event dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
- CVE-2021-22207Apr 23, 2021affected < 3.4.5-3.53.1fixed 3.4.5-3.53.1
Excessive memory consumption in MS-WSP dissector in Wireshark 3.4.0 to 3.4.4 and 3.2.0 to 3.2.12 allows denial of service via packet injection or crafted capture file
Page 1 of 2