Page 3 of 108 results (0.016 seconds)

CVSS: 5.9EPSS: 0%CPEs: 16EXPL: 0

02 Jul 2016 — The USB subsystem in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles class types, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. El subsistema de USB en Wireshark 1.12.x en versiones anteriores a 1.12.12 y 2.x en versiones anteriores a 2.0.4 no maneja correctamente tipos de clase, lo que permite a atacantes remotos provocar una denegación de servicio (caída de aplicación) a través de un paquete manipulado. Multiple vulnerabilities were di... • http://www.debian.org/security/2016/dsa-3615 • CWE-476: NULL Pointer Dereference •

CVSS: 5.9EPSS: 0%CPEs: 16EXPL: 1

02 Jul 2016 — epan/crypt/airpdcap.c in the IEEE 802.11 dissector in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles the lack of an EAPOL_RSN_KEY, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. epan/crypt/airpdcap.c en el disector IEEE 802.11 en Wireshark 1.12.x en versiones anteriores a 1.12.12 y 2.x en versiones anteriores a 2.0.4 no maneja correctamente la falta de una EAPOL_RSN_KEY, lo que permite a atacantes remotos provocar una denegación de servi... • http://www.debian.org/security/2016/dsa-3615 • CWE-20: Improper Input Validation •

CVSS: 5.9EPSS: 0%CPEs: 12EXPL: 0

01 May 2016 — epan/dissectors/packet-ber.c in the ASN.1 BER dissector in Wireshark 1.12.x before 1.12.10 and 2.x before 2.0.2 allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted packet that triggers an empty set. epan/dissectors/packet-ber.c en el disector ASN.1 BER en Wireshark 1.12.x en versiones anteriores a 1.12.10 y 2.x en versiones anteriores a 2.0.2 permite a atacantes remotos provocar una denegación de servicio (sobrelectura de buffer y caída de aplicación) ... • http://lists.opensuse.org/opensuse-updates/2016-03/msg00015.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 5.9EPSS: 0%CPEs: 12EXPL: 0

01 May 2016 — Off-by-one error in epan/dissectors/packet-gsm_abis_oml.c in the GSM A-bis OML dissector in Wireshark 1.12.x before 1.12.10 and 2.x before 2.0.2 allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted packet that triggers a 0xff tag value. Error por un paso en epan/dissectors/packet-gsm_abis_oml.c en el disector GSM A-bis OML en Wireshark 1.12.x en versiones anteriores a 1.12.10 y 2.x en versiones anteriores a 2.0.2 permite a atacantes remotos provocar una... • http://lists.opensuse.org/opensuse-updates/2016-03/msg00015.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 5.9EPSS: 0%CPEs: 12EXPL: 0

01 May 2016 — epan/dissectors/packet-ber.c in the ASN.1 BER dissector in Wireshark 1.12.x before 1.12.10 and 2.x before 2.0.2 allows remote attackers to cause a denial of service (deep recursion, stack consumption, and application crash) via a packet that specifies deeply nested data. epan/dissectors/packet-ber.c en el disector ASN.1 BER en Wireshark 1.12.x en versiones anteriores a 1.12.10 y 2.x en versiones anteriores a 2.0.2 permite a atacantes remotos provocar una denegación de servicio (recursión profunda, consumo d... • http://lists.opensuse.org/opensuse-updates/2016-03/msg00015.html • CWE-20: Improper Input Validation •

CVSS: 5.9EPSS: 0%CPEs: 14EXPL: 0

25 Apr 2016 — epan/dissectors/packet-iax2.c in the IAX2 dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (infinite loop) via a crafted packet. epan/dissectors/packet-iax2.c en el disector IAX2 en Wireshark 1.12.x en versiones anteriores a 1.12.11 y 2.0.x en versiones anteriores a 2.0.3 utiliza un tipo de dato entero incorrecto, lo que permite a atacantes remotos provocar una denegación de servicio (bucle inf... • http://www.debian.org/security/2016/dsa-3585 • CWE-284: Improper Access Control •

CVSS: 5.9EPSS: 0%CPEs: 14EXPL: 0

25 Apr 2016 — epan/proto.c in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not limit the protocol-tree depth, which allows remote attackers to cause a denial of service (stack memory consumption and application crash) via a crafted packet. epan/proto.c en Wireshark 1.12.x en versiones anteriores a 1.12.11 y 2.0.x en versiones anteriores a 2.0.3 no limita la profundidad de árbol de protocolo, lo que permite a atacantes remotos provocar una denegación de servicio (consumo de memoria de pila y caída de aplica... • http://www.debian.org/security/2016/dsa-3585 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 5.9EPSS: 0%CPEs: 16EXPL: 0

25 Apr 2016 — Stack-based buffer overflow in epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 1.12.x before 1.12.11 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a long string in a packet. Desbordamiento de buffer basado en pila en epan/dissectors/packet-ncp2222.inc en el disector NCP en Wireshark 1.12.x en versiones anteriores a 1.12.11 permite a atacantes remotos provocar una denegación de servicio (caída de aplicación) o posib... • http://www.debian.org/security/2016/dsa-3585 • CWE-20: Improper Input Validation •

CVSS: 5.9EPSS: 0%CPEs: 14EXPL: 0

25 Apr 2016 — The IEEE 802.11 dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not properly restrict element lists, which allows remote attackers to cause a denial of service (deep recursion and application crash) via a crafted packet, related to epan/dissectors/packet-capwap.c and epan/dissectors/packet-ieee80211.c. El disector IEEE 802.11 en Wireshark 1.12.x en versiones anteriores a 1.12.11 y 2.0.x en versiones anteriores a 2.0.3 no restringe adecuadamente listas de elementos, lo que permite a ... • http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.html • CWE-20: Improper Input Validation •

CVSS: 5.9EPSS: 0%CPEs: 16EXPL: 0

25 Apr 2016 — epan/dissectors/packet-gsm_cbch.c in the GSM CBCH dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 uses the wrong variable to index an array, which allows remote attackers to cause a denial of service (out-of-bounds access and application crash) via a crafted packet. epan/dissectors/packet-gsm_cbch.c en el disector GSM CBCH en Wireshark 1.12.x en versiones anteriores a 1.12.11 y 2.0.x en versiones anteriores a 2.0.3 utiliza la variable incorrecta para indexar un array, lo que permite a at... • http://www.debian.org/security/2016/dsa-3585 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •