VYPR

rpm package

suse/wireshark&distro=SUSE Enterprise Storage 7.1

pkg:rpm/suse/wireshark&distro=SUSE%20Enterprise%20Storage%207.1

Vulnerabilities (13)

  • CVE-2024-24476Feb 21, 2024
    affected < 3.6.22-150000.3.112.1fixed 3.6.22-150000.3.112.1

    A buffer overflow in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the pan/addr_resolv.c, and ws_manuf_lookup_str(), size components. NOTE: this is disputed by the vendor because neither release 4.2.0 nor any other release was affected.

  • CVE-2024-0209Jan 3, 2024
    affected < 3.6.20-150000.3.109.1fixed 3.6.20-150000.3.109.1

    IEEE 1609.2 dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet injection or crafted capture file

  • CVE-2024-0208Jan 3, 2024
    affected < 3.6.20-150000.3.109.1fixed 3.6.20-150000.3.109.1

    GVCP dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet injection or crafted capture file

  • CVE-2023-1994Apr 12, 2023
    affected < 3.6.13-150000.3.89.1fixed 3.6.13-150000.3.89.1

    GQUIC dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file

  • CVE-2023-1993Apr 12, 2023
    affected < 3.6.13-150000.3.89.1fixed 3.6.13-150000.3.89.1

    LISP dissector large loop in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file

  • CVE-2023-1992Apr 12, 2023
    affected < 3.6.13-150000.3.89.1fixed 3.6.13-150000.3.89.1

    RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file

  • CVE-2023-0417Jan 24, 2023
    affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1

    Memory leak in the NFS dissector in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

  • CVE-2023-0416Jan 24, 2023
    affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1

    GNW dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

  • CVE-2023-0415Jan 24, 2023
    affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1

    iSCSI dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

  • CVE-2023-0413Jan 24, 2023
    affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1

    Dissection engine bug in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

  • CVE-2023-0412Jan 24, 2023
    affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1

    TIPC dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

  • CVE-2023-0411Jan 24, 2023
    affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1

    Excessive loops in multiple dissectors in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

  • CVE-2022-4345Jan 12, 2023
    affected < 3.6.11-150000.3.83.1fixed 3.6.11-150000.3.83.1

    Infinite loops in the BPv6, OpenFlow, and Kafka protocol dissectors in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allows denial of service via packet injection or crafted capture file