
CVE-2016-7176
https://notcve.org/view.php?id=CVE-2016-7176
09 Sep 2016 — epan/dissectors/packet-h225.c in the H.225 dissector in Wireshark 2.x before 2.0.6 calls snprintf with one of its input buffers as the output buffer, which allows remote attackers to cause a denial of service (copy overlap and application crash) via a crafted packet. epan/dissectors/packet-h225.c en el disector H.225 en Wireshark 2.x en versiones anteriores a 2.0.6 llama a snprintf con uno de sus búfer de entrada como si fuera un búfer de salida, lo que permite a atacantes remotos provocar una denegación de... • http://www.debian.org/security/2016/dsa-3671 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-7177
https://notcve.org/view.php?id=CVE-2016-7177
09 Sep 2016 — epan/dissectors/packet-catapult-dct2000.c in the Catapult DCT2000 dissector in Wireshark 2.x before 2.0.6 does not restrict the number of channels, which allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted packet. epan/dissectors/packet-catapult-dct2000.c en el disector Catapult DCT2000 en Wireshark 2.x en versiones anteriores a 2.0.6 no restringe el número de canales, lo que permite a atacantes remotos provocar una denegación de servicio (sobrelectura... • http://www.debian.org/security/2016/dsa-3671 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-7178
https://notcve.org/view.php?id=CVE-2016-7178
09 Sep 2016 — epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 2.x before 2.0.6 does not ensure that memory is allocated for certain data structures, which allows remote attackers to cause a denial of service (invalid write access and application crash) via a crafted packet. epan/dissectors/packet-umts_fp.c en el disector UMTS FP en Wireshark 2.x en versiones anteriores a 2.0.6 no asegura que la memoria sea asignada para ciertas estructuras de datos, lo que permite a atacantes remotos provocar una d... • http://www.debian.org/security/2016/dsa-3671 • CWE-787: Out-of-bounds Write •

CVE-2016-7179
https://notcve.org/view.php?id=CVE-2016-7179
09 Sep 2016 — Stack-based buffer overflow in epan/dissectors/packet-catapult-dct2000.c in the Catapult DCT2000 dissector in Wireshark 2.x before 2.0.6 allows remote attackers to cause a denial of service (application crash) via a crafted packet. Desbordamiento del búfer basado en pila en epan/dissectors/packet-catapult-dct2000.c en el disector Catapult DCT2000 en Wireshark 2.x en versiones anteriores a 2.0.6 permite a atacantes remotos provocar una denegación de servicio (caída de la aplicación) a través de un paquete ma... • http://www.debian.org/security/2016/dsa-3671 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-7180
https://notcve.org/view.php?id=CVE-2016-7180
09 Sep 2016 — epan/dissectors/packet-ipmi-trace.c in the IPMI trace dissector in Wireshark 2.x before 2.0.6 does not properly consider whether a string is constant, which allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted packet. epan/dissectors/packet-ipmi-trace.c en el disector de trazo IPMI en Wireshark 2.x en versiones anteriores a 2.0.6 no considera adecuadamente cuándo una cadena es constante. lo que permite a atacantes remotos provocar una denegación de servic... • http://www.debian.org/security/2016/dsa-3671 • CWE-416: Use After Free •

CVE-2016-6503 – Wireshark 2.0.0 < 2.0.4 - CORBA IDL Dissectors Denial of Service
https://notcve.org/view.php?id=CVE-2016-6503
06 Aug 2016 — The CORBA IDL dissectors in Wireshark 2.x before 2.0.5 on 64-bit Windows platforms do not properly interact with Visual C++ compiler options, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. Los disectores CORBA IDL en Wireshark 2.x en versiones anteriores a 2.0.5 en plataformas Windows 64-bit no interactúa adecuadamente con opciones del compilador de Visual C++, lo que permite a atacantes remotos provocar una denegación de servicio (caída de aplicación) a... • https://www.exploit-db.com/exploits/40196 • CWE-20: Improper Input Validation •

CVE-2016-6505 – Wireshark 1.12.0 < 1.12.12 / 2.0.0 < 2.0.4 - PacketBB Dissector Denial of Service
https://notcve.org/view.php?id=CVE-2016-6505
06 Aug 2016 — epan/dissectors/packet-packetbb.c in the PacketBB dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted packet. epan/dissectors/packet-packetbb.c en el disector PacketBB en Wireshark 1.12.x en versiones anteriores a 1.12.13 y 2.x en versiones anteriores a 2.0.5 permite a atacantes remotos provocar una denegación de servicio (error de división por cero y caída de aplicación) a través de... • https://www.exploit-db.com/exploits/40197 • CWE-369: Divide By Zero •

CVE-2016-6506 – Debian Security Advisory 3648-1
https://notcve.org/view.php?id=CVE-2016-6506
06 Aug 2016 — epan/dissectors/packet-wsp.c in the WSP dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause a denial of service (infinite loop) via a crafted packet. epan/dissectors/packet-wsp.c en el disector WSP en Wireshark 1.12.x en versiones anteriores a 1.12.13 y 2.x en versiones anteriores a 2.0.5 permite a atacantes remotos provocar una denegación de servicio (bucle infinito) a través de un paquete manipulado. Multiple vulnerabilities were discovered in the dissectors ... • http://openwall.com/lists/oss-security/2016/07/28/3 • CWE-399: Resource Management Errors •

CVE-2016-6507 – Debian Security Advisory 3648-1
https://notcve.org/view.php?id=CVE-2016-6507
06 Aug 2016 — epan/dissectors/packet-mmse.c in the MMSE dissector in Wireshark 1.12.x before 1.12.13 allows remote attackers to cause a denial of service (infinite loop) via a crafted packet. epan/dissectors/packet-mmse.c en el disector MMSE en Wireshark 1.12.x en versiones anteriores a 1.12.13 permite a atacantes remotos provocar una denegación de servicio (bucle infinito) a través de un paquete manipulado. Multiple vulnerabilities were discovered in the dissectors for NDS, PacketBB, WSP, MMSE, RLC, LDSS, RLC and OpenFl... • http://openwall.com/lists/oss-security/2016/07/28/3 • CWE-399: Resource Management Errors •

CVE-2016-6508 – Debian Security Advisory 3648-1
https://notcve.org/view.php?id=CVE-2016-6508
06 Aug 2016 — epan/dissectors/packet-rlc.c in the RLC dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (large loop) via a crafted packet. epan/dissectors/packet-rlc.c en el disector RLC en Wireshark 1.12.x en versiones anteriores a 1.12.13 y 2.x en versiones anteriores a 2.0.5 utiliza un tipo de datos de entero incorrecto, lo que permite a atacantes remotos provocar una denegación de servicio (bucle grande) a ... • http://openwall.com/lists/oss-security/2016/07/28/3 • CWE-399: Resource Management Errors •