Download
| Alert*
oval:org.secpod.oval:def:39125
The host is installed with Wireshark 2.0.x before 2.0.11 or 2.2.x before 2.2.5 and is prone to a denial of service vulnerability. A flaw is present in the application, which fails to properly handle a malformed capture file. Successful exploitation could allow remote attackers to cause a NetScaler f ... oval:org.secpod.oval:def:2100984 In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a WSP infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-wsp.c by validating the capability length. oval:org.secpod.oval:def:39134 The host is installed with Wireshark 2.0.x before 2.0.11 or 2.2.x before 2.2.5 and is prone to a denial of service vulnerability. A flaw is present in the application, which fails to properly handle a malformed capture file. Successful exploitation could allow remote attackers to cause a NetScaler f ... oval:org.secpod.oval:def:112145 Metapackage with installs wireshark-cli and wireshark-qt. oval:org.secpod.oval:def:602816 It was discovered that wireshark, a network protocol analyzer, contained several vulnerabilities in the dissectors for ASTERIX , DHCPv6, NetScaler, LDSS, IAX2, WSP, K12 and STANAG 4607, that could lead to various crashes, denial-of-service or execution of arbitrary code. |