Vulnerabilities
Vulnerable Software
Wireshark:  >> Wireshark  >> 1.8.3  Security Vulnerabilities
Wireshark 1.8.x before 1.8.4 allows remote attackers to obtain sensitive hostname information by reading pcap-ng files.
CVSS Score
5.0
EPSS Score
0.003
Published
2012-12-05
epan/dissectors/packet-usb.c in the USB dissector in Wireshark 1.6.x before 1.6.12 and 1.8.x before 1.8.4 relies on a length field to calculate an offset value, which allows remote attackers to cause a denial of service (infinite loop) via a zero value for this field.
CVSS Score
5.0
EPSS Score
0.006
Published
2012-12-05
The dissect_sflow_245_address_type function in epan/dissectors/packet-sflow.c in the sFlow dissector in Wireshark 1.8.x before 1.8.4 does not properly handle length calculations for an invalid IP address type, which allows remote attackers to cause a denial of service (infinite loop) via a packet that is neither IPv4 nor IPv6.
CVSS Score
5.0
EPSS Score
0.006
Published
2012-12-05
epan/dissectors/packet-3g-a11.c in the 3GPP2 A11 dissector in Wireshark 1.8.x before 1.8.4 allows remote attackers to cause a denial of service (infinite loop) via a zero value in a sub-type length field.
CVSS Score
5.0
EPSS Score
0.007
Published
2012-12-05


Contact Us

Shodan ® - All rights reserved