Vulnerabilities
Vulnerable Software
Wireshark:  >> Wireshark  >> 2.2.0  Security Vulnerabilities
In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the DCERPC dissector could crash with a use-after-free, triggered by network traffic or a capture file. This was addressed in epan/dissectors/packet-dcerpc-nt.c and epan/dissectors/packet-dcerpc-spoolss.c by using the wmem file scope for private strings.
CVSS Score
5.9
EPSS Score
0.012
Published
2016-11-17
In Wireshark 2.2.0 to 2.2.1, the Profinet I/O dissector could loop excessively, triggered by network traffic or a capture file. This was addressed in plugins/profinet/packet-pn-rtc-one.c by rejecting input with too many I/O objects.
CVSS Score
5.9
EPSS Score
0.004
Published
2016-11-17


Contact Us

Shodan ® - All rights reserved