![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-6338 – wireshark: SIP dissector crash (wnpa-sec-2013-63)
https://notcve.org/view.php?id=CVE-2013-6338
04 Nov 2013 — The dissect_sip_common function in epan/dissectors/packet-sip.c in the SIP dissector in Wireshark 1.8.x before 1.8.11 and 1.10.x before 1.10.3 does not properly initialize a data structure, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. La función dissect_sip_common en epan / dissectors / packet sip.c en el disecionador de SIP de Wireshark 1.8.x antes de 1.8.11 y 1.10.3 anterior a 1.10.x no inicializa correctamente una estructura de datos, lo que permite... • http://anonsvn.wireshark.org/viewvc/trunk/epan/dissectors/packet-sip.c?r1=52354&r2=52353&pathrev=52354 • CWE-20: Improper Input Validation •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-6336 – wireshark: IEEE 802.15.4 dissector crash (wnpa-sec-2013-61)
https://notcve.org/view.php?id=CVE-2013-6336
04 Nov 2013 — The ieee802154_map_rec function in epan/dissectors/packet-ieee802154.c in the IEEE 802.15.4 dissector in Wireshark 1.8.x before 1.8.11 and 1.10.x before 1.10.3 uses an incorrect pointer chain, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. La función ieee802154_map_rec en epan/dissectors/packet-ieee802154.c en el analizador de IEEE 802.15.4 en Wireshark 1.8.x antes de 1.8.11 y 1.10.x antes de 1.10.3 utiliza una cadena de puntero incorrecto, lo que permit... • http://anonsvn.wireshark.org/viewvc/trunk/epan/dissectors/packet-ieee802154.c?r1=52036&r2=52035&pathrev=52036 • CWE-20: Improper Input Validation •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-6337 – wireshark: NBAP dissector crash (wnpa-sec-2013-62)
https://notcve.org/view.php?id=CVE-2013-6337
04 Nov 2013 — Unspecified vulnerability in the NBAP dissector in Wireshark 1.8.x before 1.8.11 and 1.10.x before 1.10.3 allows remote attackers to cause a denial of service (application crash) via a crafted packet. Vulnerabilidad no especificada en el analizador de NBAP en Wireshark 11.8.x antes de 1.8.11 y 1.10.x antes de 1.10.3 permite a atacantes remotos provocar una denegación de servicio (caída de aplicación) a través de un paquete manipulado. The ieee802154_map_rec function in epan/dissectors/packet-ieee802154.c in... • http://lists.opensuse.org/opensuse-updates/2013-11/msg00026.html •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-5720 – Debian Security Advisory 2756-1
https://notcve.org/view.php?id=CVE-2013-5720
13 Sep 2013 — Buffer overflow in the RTPS dissector in Wireshark 1.8.x before 1.8.10 and 1.10.x before 1.10.2 allows remote attackers to cause a denial of service (application crash) via a crafted packet. Desbordamiento de buffer en el disector RTPS de Wireshark 1.8.x anteriores a 1.8.10 y 1.10.x anteriores a 1.10.2 permite a atacantes remotos causar denegación de servicio (caída de aplicación) a través de un paquete manipulado. The dissect_nbap_T_dCH_ID function in epan/dissectors/packet-nbap.c in the NBAP dissector in ... • http://lists.opensuse.org/opensuse-updates/2013-09/msg00050.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-5719 – Gentoo Linux Security Advisory 201312-13
https://notcve.org/view.php?id=CVE-2013-5719
13 Sep 2013 — epan/dissectors/packet-assa_r3.c in the ASSA R3 dissector in Wireshark 1.8.x before 1.8.10 and 1.10.x before 1.10.2 allows remote attackers to cause a denial of service (infinite loop) via a crafted packet. epan/dissectors/packet-assa_r3.c en el disector ASSA R3 en Wireshark 1.8.x anterior a 1.8.10 y 1.10.x anterior a 1.10.2 permite a atacantes remotos provocar una denegación de servicio (bucle infinito) a través de un paquete manipulado. The dissect_nbap_T_dCH_ID function in epan/dissectors/packet-nbap.c i... • http://anonsvn.wireshark.org/viewvc?view=revision&revision=51196 • CWE-399: Resource Management Errors •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-5721 – wireshark: MQ dissector crash (wnpa-sec-2013-58, upstream bug 9079)
https://notcve.org/view.php?id=CVE-2013-5721
13 Sep 2013 — The dissect_mq_rr function in epan/dissectors/packet-mq.c in the MQ dissector in Wireshark 1.8.x before 1.8.10 and 1.10.x before 1.10.2 does not properly determine when to enter a certain loop, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. La función dissect_mq_rr en epan/dissectors/packet-mq.c de MQ dissector de Wireshark 1.8.x anterior a 1.8.10 y 1.10.x anterior a 1.10.2 no determina apropiadamente cuando entrar en un deteminado bucle , lo que permite... • http://anonsvn.wireshark.org/viewvc?view=revision&revision=51603 • CWE-20: Improper Input Validation •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-5722 – Debian Security Advisory 2756-1
https://notcve.org/view.php?id=CVE-2013-5722
13 Sep 2013 — Unspecified vulnerability in the LDAP dissector in Wireshark 1.8.x before 1.8.10 and 1.10.x before 1.10.2 allows remote attackers to cause a denial of service (application crash) via a crafted packet. Vulnerabilidad no especificada en el disector LDAP de Wireshark 1.8.x (anteriores a 1.8.10) y 1.10.x (anteriores a 1.10.2) permite a atacantes remotos causar una denegación de servicio (cuelgue de aplicación) a través de un paquete manipulado. The dissect_nbap_T_dCH_ID function in epan/dissectors/packet-nbap.c... • http://lists.opensuse.org/opensuse-updates/2013-09/msg00050.html •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-5717 – Gentoo Linux Security Advisory 201312-13
https://notcve.org/view.php?id=CVE-2013-5717
13 Sep 2013 — The Bluetooth HCI ACL dissector in Wireshark 1.10.x before 1.10.2 does not properly maintain a certain free list, which allows remote attackers to cause a denial of service (application crash) via a crafted packet that is not properly handled by the wmem_block_alloc function in epan/wmem/wmem_allocator_block.c. El disector de Bluetooth HCI ACL en Wireshark 1.10.x anteriores a v1.10.2 no mantiene correctamente una cierta lista libre, lo cual permite a atacantes remotos causar denegación de servicio (caída de... • http://anonsvn.wireshark.org/viewvc?view=revision&revision=51130 • CWE-20: Improper Input Validation •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-5718 – Debian Security Advisory 2756-1
https://notcve.org/view.php?id=CVE-2013-5718
13 Sep 2013 — The dissect_nbap_T_dCH_ID function in epan/dissectors/packet-nbap.c in the NBAP dissector in Wireshark 1.8.x before 1.8.10 and 1.10.x before 1.10.2 does not restrict the dch_id value, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. La función dissect_nbap_T_dCH_ID en epan/dissectors/packet-nbap.c del disector NBAP en Wireshark 1.8.x (anteriores a 1.8.10) y 1.10.x (anteriores a 1.10.2) no restringe el valor dch_id, lo que permite a atacantes remotos causar... • http://anonsvn.wireshark.org/viewvc?view=revision&revision=51195 • CWE-264: Permissions, Privileges, and Access Controls •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-4920 – Gentoo Linux Security Advisory 201308-05
https://notcve.org/view.php?id=CVE-2013-4920
29 Jul 2013 — The P1 dissector in Wireshark 1.10.x before 1.10.1 does not properly initialize a global variable, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. El disector P1 de Wireshark 1.10.x anterior 1.10.1, no inicializa adecuadamente la variable global, lo que permite a atacantes remotos provocar una denegación de servicio (caída de aplicación) a través de un paquete manipulado. Multiple vulnerabilities have been found in Wireshark, allowing remote attackers to ... • http://anonsvn.wireshark.org/viewvc?view=revision&revision=50083 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •