rpm package
suse/wireshark&distro=SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS
pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP1-LTSS
Vulnerabilities (33)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2021-4184 | — | < 3.6.1-3.68.1 | 3.6.1-3.68.1 | Dec 30, 2021 | Infinite loop in the BitTorrent DHT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file | ||
| CVE-2021-4183 | — | < 3.6.1-3.68.1 | 3.6.1-3.68.1 | Dec 30, 2021 | Crash in the pcapng file parser in Wireshark 3.6.0 allows denial of service via crafted capture file | ||
| CVE-2021-4182 | — | < 3.6.1-3.68.1 | 3.6.1-3.68.1 | Dec 30, 2021 | Crash in the RFC 7468 dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file | ||
| CVE-2021-4181 | — | < 3.6.1-3.68.1 | 3.6.1-3.68.1 | Dec 30, 2021 | Crash in the Sysdig Event dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file | ||
| CVE-2021-22207 | — | < 3.4.5-3.53.1 | 3.4.5-3.53.1 | Apr 23, 2021 | Excessive memory consumption in MS-WSP dissector in Wireshark 3.4.0 to 3.4.4 and 3.2.0 to 3.2.12 allows denial of service via packet injection or crafted capture file | ||
| CVE-2021-22191 | — | < 3.4.5-3.53.1 | 3.4.5-3.53.1 | Mar 15, 2021 | Improper URL handling in Wireshark 3.4.0 to 3.4.3 and 3.2.0 to 3.2.11 could allow remote code execution via via packet injection or crafted capture file. | ||
| CVE-2021-22173 | — | < 3.4.5-3.53.1 | 3.4.5-3.53.1 | Feb 17, 2021 | Memory leak in USB HID dissector in Wireshark 3.4.0 to 3.4.2 allows denial of service via packet injection or crafted capture file | ||
| CVE-2021-22174 | — | < 3.4.5-3.53.1 | 3.4.5-3.53.1 | Feb 17, 2021 | Crash in USB HID dissector in Wireshark 3.4.0 to 3.4.2 allows denial of service via packet injection or crafted capture file | ||
| CVE-2020-26422 | — | < 3.4.5-3.53.1 | 3.4.5-3.53.1 | Dec 21, 2020 | Buffer overflow in QUIC dissector in Wireshark 3.4.0 to 3.4.1 allows denial of service via packet injection or crafted capture file | ||
| CVE-2020-26418 | — | < 3.4.5-3.53.1 | 3.4.5-3.53.1 | Dec 11, 2020 | Memory leak in Kafka protocol dissector in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file. | ||
| CVE-2020-26421 | — | < 3.4.5-3.53.1 | 3.4.5-3.53.1 | Dec 11, 2020 | Crash in USB HID protocol dissector and possibly other dissectors in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file. | ||
| CVE-2020-26420 | — | < 3.4.5-3.53.1 | 3.4.5-3.53.1 | Dec 11, 2020 | Memory leak in RTPS protocol dissector in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file. | ||
| CVE-2020-26419 | — | < 3.4.5-3.53.1 | 3.4.5-3.53.1 | Dec 11, 2020 | Memory leak in the dissection engine in Wireshark 3.4.0 allows denial of service via packet injection or crafted capture file. |
- CVE-2021-4184Dec 30, 2021affected < 3.6.1-3.68.1fixed 3.6.1-3.68.1
Infinite loop in the BitTorrent DHT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
- CVE-2021-4183Dec 30, 2021affected < 3.6.1-3.68.1fixed 3.6.1-3.68.1
Crash in the pcapng file parser in Wireshark 3.6.0 allows denial of service via crafted capture file
- CVE-2021-4182Dec 30, 2021affected < 3.6.1-3.68.1fixed 3.6.1-3.68.1
Crash in the RFC 7468 dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
- CVE-2021-4181Dec 30, 2021affected < 3.6.1-3.68.1fixed 3.6.1-3.68.1
Crash in the Sysdig Event dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
- CVE-2021-22207Apr 23, 2021affected < 3.4.5-3.53.1fixed 3.4.5-3.53.1
Excessive memory consumption in MS-WSP dissector in Wireshark 3.4.0 to 3.4.4 and 3.2.0 to 3.2.12 allows denial of service via packet injection or crafted capture file
- CVE-2021-22191Mar 15, 2021affected < 3.4.5-3.53.1fixed 3.4.5-3.53.1
Improper URL handling in Wireshark 3.4.0 to 3.4.3 and 3.2.0 to 3.2.11 could allow remote code execution via via packet injection or crafted capture file.
- CVE-2021-22173Feb 17, 2021affected < 3.4.5-3.53.1fixed 3.4.5-3.53.1
Memory leak in USB HID dissector in Wireshark 3.4.0 to 3.4.2 allows denial of service via packet injection or crafted capture file
- CVE-2021-22174Feb 17, 2021affected < 3.4.5-3.53.1fixed 3.4.5-3.53.1
Crash in USB HID dissector in Wireshark 3.4.0 to 3.4.2 allows denial of service via packet injection or crafted capture file
- CVE-2020-26422Dec 21, 2020affected < 3.4.5-3.53.1fixed 3.4.5-3.53.1
Buffer overflow in QUIC dissector in Wireshark 3.4.0 to 3.4.1 allows denial of service via packet injection or crafted capture file
- CVE-2020-26418Dec 11, 2020affected < 3.4.5-3.53.1fixed 3.4.5-3.53.1
Memory leak in Kafka protocol dissector in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.
- CVE-2020-26421Dec 11, 2020affected < 3.4.5-3.53.1fixed 3.4.5-3.53.1
Crash in USB HID protocol dissector and possibly other dissectors in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.
- CVE-2020-26420Dec 11, 2020affected < 3.4.5-3.53.1fixed 3.4.5-3.53.1
Memory leak in RTPS protocol dissector in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.
- CVE-2020-26419Dec 11, 2020affected < 3.4.5-3.53.1fixed 3.4.5-3.53.1
Memory leak in the dissection engine in Wireshark 3.4.0 allows denial of service via packet injection or crafted capture file.
Page 2 of 2