Wireshark 4.0.2

CPE Details

Wireshark 4.0.2
4.0.2
2023-01-18
14h39 +00:00
2023-01-20
14h16 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:wireshark:wireshark:4.0.2:*:*:*:*:*:*:*

Informations

Vendor

wireshark

Product

wireshark

Version

4.0.2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-8250 2024-08-28 23h30 +00:00 NTLMSSP dissector crash in Wireshark 4.2.0 to 4.0.6 and 4.0.0 to 4.0.16 allows denial of service via packet injection or crafted capture file
7.8
High
CVE-2024-0209 2024-01-03 07h31 +00:00 IEEE 1609.2 dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet injection or crafted capture file
7.8
High
CVE-2024-0208 2024-01-03 07h31 +00:00 GVCP dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet injection or crafted capture file
7.8
High
CVE-2023-6174 2023-11-16 11h30 +00:00 SSH dissector crash in Wireshark 4.0.0 to 4.0.10 allows denial of service via packet injection or crafted capture file
6.5
Medium
CVE-2023-5371 2023-10-04 16h01 +00:00 RTPS dissector memory leak in Wireshark 4.0.0 to 4.0.8 and 3.6.0 to 3.6.16 allows denial of service via packet injection or crafted capture file
6.5
Medium
CVE-2023-2906 2023-08-25 20h41 +00:00 Due to a failure in validating the length provided by an attacker-crafted CP2179 packet, Wireshark versions 2.0.0 through 4.0.7 is susceptible to a divide by zero allowing for a denial of service attack.
6.5
Medium
CVE-2023-4513 2023-08-24 06h30 +00:00 BT SDP dissector memory leak in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file
7.5
High
CVE-2023-4512 2023-08-24 06h30 +00:00 CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file
7.5
High
CVE-2023-4511 2023-08-24 06h30 +00:00 BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file
7.5
High
CVE-2023-3649 2023-07-14 06h16 +00:00 iSCSI dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file
5.5
Medium
CVE-2023-3648 2023-07-14 06h16 +00:00 Kafka dissector crash in Wireshark 4.0.0 to 4.0.6 and 3.6.0 to 3.6.14 allows denial of service via packet injection or crafted capture file
5.5
Medium
CVE-2023-0667 2023-06-07 02h38 +00:00 Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark version 4.0.5 and prior, in an unusual configuration, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark
6.5
Medium
CVE-2023-0668 2023-06-07 02h32 +00:00 Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and prior, by default, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark.
6.5
Medium
CVE-2023-0666 2023-06-07 02h25 +00:00 Due to failure in validating the length provided by an attacker-crafted RTPS packet, Wireshark version 4.0.5 and prior, by default, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark.
6.5
Medium
CVE-2023-2952 2023-05-29 22h00 +00:00 XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file
6.5
Medium
CVE-2023-2854 2023-05-25 22h00 +00:00 BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
6.5
Medium
CVE-2023-2855 2023-05-25 22h00 +00:00 Candump log parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
6.5
Medium
CVE-2023-2856 2023-05-25 22h00 +00:00 VMS TCPIPtrace file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
6.5
Medium
CVE-2023-2857 2023-05-25 22h00 +00:00 BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
6.5
Medium
CVE-2023-2858 2023-05-25 22h00 +00:00 NetScaler file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
6.5
Medium
CVE-2023-2879 2023-05-25 22h00 +00:00 GDSDB infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file
7.5
High
CVE-2023-1992 2023-04-12 00h00 +00:00 RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
7.5
High
CVE-2023-1993 2023-04-12 00h00 +00:00 LISP dissector large loop in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
6.5
Medium
CVE-2023-1994 2023-04-12 00h00 +00:00 GQUIC dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
6.5
Medium
CVE-2023-1161 2023-03-05 23h00 +00:00 ISO 15765 and ISO 10681 dissector crash in Wireshark 4.0.0 to 4.0.3 and 3.6.0 to 3.6.11 allows denial of service via packet injection or crafted capture file
7.1
High
CVE-2023-0411 2023-01-23 23h00 +00:00 Excessive loops in multiple dissectors in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
6.5
Medium
CVE-2023-0412 2023-01-23 23h00 +00:00 TIPC dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
7.1
High
CVE-2023-0413 2023-01-23 23h00 +00:00 Dissection engine bug in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
6.5
Medium
CVE-2023-0414 2023-01-23 23h00 +00:00 Crash in the EAP dissector in Wireshark 4.0.0 to 4.0.2 allows denial of service via packet injection or crafted capture file
6.5
Medium
CVE-2023-0415 2023-01-23 23h00 +00:00 iSCSI dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
6.5
Medium
CVE-2023-0416 2023-01-23 23h00 +00:00 GNW dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
6.5
Medium
CVE-2023-0417 2023-01-23 23h00 +00:00 Memory leak in the NFS dissector in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
6.5
Medium