Page 5 of 78 results (0.003 seconds)

CVSS: 7.5EPSS: 0%CPEs: 16EXPL: 1

05 Dec 2012 — The dissect_isakmp function in epan/dissectors/packet-isakmp.c in the ISAKMP dissector in Wireshark 1.6.x before 1.6.12 and 1.8.x before 1.8.4 uses an incorrect data structure to determine IKEv2 decryption parameters, which allows remote attackers to cause a denial of service (application crash) via a malformed packet. La función dissect_isakmp en epan/dissectors/packet-isakmp.c en el disecctor ISAKMP en Wireshark v1.6.x anterior a v1.6.12 y v1.8.x anterior a v1.8.4 usa una estructura de datos incorrecta pa... • http://anonsvn.wireshark.org/viewvc/trunk/epan/dissectors/packet-isakmp.c?r1=45510&r2=45509&pathrev=45510 • CWE-20: Improper Input Validation •

CVSS: 7.5EPSS: 0%CPEs: 16EXPL: 1

05 Dec 2012 — Integer overflow in the dissect_iscsi_pdu function in epan/dissectors/packet-iscsi.c in the iSCSI dissector in Wireshark 1.6.x before 1.6.12 and 1.8.x before 1.8.4 allows remote attackers to cause a denial of service (infinite loop) via a malformed packet. Desbordamiento de entero en la función dissect_iscsi_pdu en epan/dissectors/packet-iscsi.c en el dissector iSCSI en Wireshark v1.6.x anterior a v1.6.12 y v1.8.x anterior a v1.8.4 permite a atacantes generar una denegación de servicio (bucle infinito) medi... • http://anonsvn.wireshark.org/viewvc/trunk/epan/dissectors/packet-iscsi.c?r1=45524&r2=45523&pathrev=45524 • CWE-189: Numeric Errors CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop') •

CVSS: 7.5EPSS: 0%CPEs: 16EXPL: 2

05 Dec 2012 — The dissect_wtp_common function in epan/dissectors/packet-wtp.c in the WTP dissector in Wireshark 1.6.x before 1.6.12 and 1.8.x before 1.8.4 uses an incorrect data type for a certain length field, which allows remote attackers to cause a denial of service (integer overflow and infinite loop) via a crafted value in a packet. La función dissect_wtp_common en epan/dissectors/packet-wtp.c en el WTP dissector en Wireshark v1.6.x anterior a v1.6.12 y v1.8.x anterior a v1.8.4 utiliza un tipo de datos incorrecto pa... • http://anonsvn.wireshark.org/viewvc/trunk/epan/dissectors/packet-wtp.c?r1=45614&r2=45613&pathrev=45614 • CWE-189: Numeric Errors CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop') •

CVSS: 7.5EPSS: 0%CPEs: 16EXPL: 2

05 Dec 2012 — The dissect_rtcp_app function in epan/dissectors/packet-rtcp.c in the RTCP dissector in Wireshark 1.6.x before 1.6.12 and 1.8.x before 1.8.4 allows remote attackers to cause a denial of service (infinite loop) via a crafted packet. La función dissect_rtcp_app en epan/dissectors/packet-rtcp.c en el RTCP dissector en Wireshark v1.6.x anterior a v1.6.12 y v1.8.x anterior a v1.8.4 permite a atacantes remotos generar una denegación de servicio (bucle infinito) mediante un paquete manipulado Wireshark, previously... • http://anonsvn.wireshark.org/viewvc/trunk/epan/dissectors/packet-rtcp.c?r1=45717&r2=45716&pathrev=45717 • CWE-20: Improper Input Validation CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop') •

CVSS: 7.5EPSS: 0%CPEs: 14EXPL: 1

30 Aug 2012 — The dissect_drda function in epan/dissectors/packet-drda.c in Wireshark 1.6.x through 1.6.10 and 1.8.x through 1.8.2 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a small value for a certain length field in a capture file. La función dissect_drda en epan/dissectors/packet-drda.c en Wireshark v1.6.x hasta v1.6.10 y v1.8.x hasta v1.8.2 permite a atacantes remotos causar una denegación de servicio (ciclo infinito y consumo de memoria) a través de un valor pequeño ... • http://openwall.com/lists/oss-security/2012/08/29/4 • CWE-399: Resource Management Errors •

CVSS: 7.5EPSS: 1%CPEs: 30EXPL: 1

16 Aug 2012 — Integer overflow in the dissect_xtp_ecntl function in epan/dissectors/packet-xtp.c in the XTP dissector in Wireshark 1.4.x before 1.4.15, 1.6.x before 1.6.10, and 1.8.x before 1.8.2 allows remote attackers to cause a denial of service (loop or application crash) via a large value for a span length. Desbordamiento de entero en la función dissect_xtp_ecntl en epan/dissectors/packet-xtp.c en el (XTP dissector) en Wireshark v1.4.x anterior a v1.4.15, v1.6.x anterior a v1.6.10, y v1.8.x anterior a v1.8.2 permite... • http://anonsvn.wireshark.org/viewvc/trunk/epan/dissectors/packet-xtp.c?r1=44289&r2=44288&pathrev=44289 • CWE-189: Numeric Errors •

CVSS: 7.5EPSS: 1%CPEs: 30EXPL: 1

16 Aug 2012 — The dissect_stun_message function in epan/dissectors/packet-stun.c in the STUN dissector in Wireshark 1.4.x before 1.4.15, 1.6.x before 1.6.10, and 1.8.x before 1.8.2 does not properly interact with key-destruction behavior in a certain tree library, which allows remote attackers to cause a denial of service (application crash) via a malformed packet. La función dissect_stun_message en epan/dissectors/packet-stun.c en STUN dissector en Wireshark v1.4.x anterior a v1.4.15, v1.6.x anterior a v1.6.10, y v1.8.x... • http://anonsvn.wireshark.org/viewvc/trunk/epan/dissectors/packet-stun.c?r1=44366&r2=44365&pathrev=44366 • CWE-20: Improper Input Validation •

CVSS: 7.5EPSS: 1%CPEs: 30EXPL: 0

16 Aug 2012 — plugins/ethercat/packet-ecatmb.c in the EtherCAT Mailbox dissector in Wireshark 1.4.x before 1.4.15, 1.6.x before 1.6.10, and 1.8.x before 1.8.2 does not properly handle certain integer fields, which allows remote attackers to cause a denial of service (application exit) via a malformed packet. plugins/EtherCAT/packet-ecatmb.c en el disector de buzón de correo EtherCAT en Wireshark v1.4.x antes de v1.4.15, v1.6.x antes de v1.6.10 y v1.8.x antes de v1.8.2 no maneja adecuadamente ciertos campos enteros, lo qu... • http://anonsvn.wireshark.org/viewvc/trunk/plugins/ethercat/packet-ecatmb.c?r1=43149&r2=43148&pathrev=43149 • CWE-189: Numeric Errors •

CVSS: 7.5EPSS: 1%CPEs: 30EXPL: 1

16 Aug 2012 — Buffer overflow in epan/dissectors/packet-rtps2.c in the RTPS2 dissector in Wireshark 1.4.x before 1.4.15, 1.6.x before 1.6.10, and 1.8.x before 1.8.2 allows remote attackers to cause a denial of service (CPU consumption) via a malformed packet. Un desbordamiento de búfer en epan/dissectors/packet-rtps2.c en el disector RTPS2 en Wireshark v1.4.x antes de v1.4.15, v1.6.10 antes v1.6.x, y v1.8.x antes de v1.8.2 permite a atacantes remotos provocar una denegación de servicio (por excesivo consumo de CPU) a tra... • http://anonsvn.wireshark.org/viewvc/trunk/epan/dissectors/packet-rtps2.c?r1=44320&r2=44319&pathrev=44320 • CWE-399: Resource Management Errors •

CVSS: 8.3EPSS: 8%CPEs: 13EXPL: 0

16 Aug 2012 — Buffer overflow in the dissect_gsm_rlcmac_downlink function in epan/dissectors/packet-gsm_rlcmac.c in the GSM RLC MAC dissector in Wireshark 1.6.x before 1.6.10 and 1.8.x before 1.8.2 allows remote attackers to execute arbitrary code via a malformed packet. Un desbordamiento de búfer en la función dissect_gsm_rlcmac_downlink en epan/ dissectors/packet-gsm_rlcmac.c en GSM RLC MAC dissector en Wireshark v1.6.x antes de v1.6.10 y v1.8.x antes de v1.8.2 permite a atacantes remotos ejecutar código de su elección... • http://anonsvn.wireshark.org/viewvc/trunk/epan/dissectors/packet-gsm_rlcmac.h?r1=44307&r2=44306&pathrev=44307 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •