
CVE-2016-6510 – Debian Security Advisory 3648-1
https://notcve.org/view.php?id=CVE-2016-6510
06 Aug 2016 — Off-by-one error in epan/dissectors/packet-rlc.c in the RLC dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) via a crafted packet. Error por un paso en epan/dissectors/packet-rlc.c en el disector RLC en Wireshark 1.12.x en versiones anteriores a 1.12.13 y 2.x en versiones anteriores a 2.0.5 permite a atacantes remotos provocar una denegación de servicio (desbordamiento de búfer basado en... • http://openwall.com/lists/oss-security/2016/07/28/3 • CWE-189: Numeric Errors •

CVE-2016-6511 – Debian Security Advisory 3648-1
https://notcve.org/view.php?id=CVE-2016-6511
06 Aug 2016 — epan/proto.c in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause a denial of service (OpenFlow dissector large loop) via a crafted packet. epan/proto.c en Wireshark 1.12.x en versiones anteriores a 1.12.13 y 2.x en versiones anteriores a 2.0.5 permite a atacantes remotos provocar una denegación de servicio (bucle grande de disector OpenFlow) a través de un paquete manipulado. Multiple vulnerabilities were discovered in the dissectors for NDS, PacketBB, WSP, MMSE, RLC, LD... • http://openwall.com/lists/oss-security/2016/07/28/3 • CWE-399: Resource Management Errors •

CVE-2016-6503 – Wireshark 2.0.0 < 2.0.4 - CORBA IDL Dissectors Denial of Service
https://notcve.org/view.php?id=CVE-2016-6503
06 Aug 2016 — The CORBA IDL dissectors in Wireshark 2.x before 2.0.5 on 64-bit Windows platforms do not properly interact with Visual C++ compiler options, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. Los disectores CORBA IDL en Wireshark 2.x en versiones anteriores a 2.0.5 en plataformas Windows 64-bit no interactúa adecuadamente con opciones del compilador de Visual C++, lo que permite a atacantes remotos provocar una denegación de servicio (caída de aplicación) a... • https://www.exploit-db.com/exploits/40196 • CWE-20: Improper Input Validation •

CVE-2016-6505 – Wireshark 1.12.0 < 1.12.12 / 2.0.0 < 2.0.4 - PacketBB Dissector Denial of Service
https://notcve.org/view.php?id=CVE-2016-6505
06 Aug 2016 — epan/dissectors/packet-packetbb.c in the PacketBB dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted packet. epan/dissectors/packet-packetbb.c en el disector PacketBB en Wireshark 1.12.x en versiones anteriores a 1.12.13 y 2.x en versiones anteriores a 2.0.5 permite a atacantes remotos provocar una denegación de servicio (error de división por cero y caída de aplicación) a través de... • https://www.exploit-db.com/exploits/40197 • CWE-369: Divide By Zero •

CVE-2016-6507 – Debian Security Advisory 3648-1
https://notcve.org/view.php?id=CVE-2016-6507
06 Aug 2016 — epan/dissectors/packet-mmse.c in the MMSE dissector in Wireshark 1.12.x before 1.12.13 allows remote attackers to cause a denial of service (infinite loop) via a crafted packet. epan/dissectors/packet-mmse.c en el disector MMSE en Wireshark 1.12.x en versiones anteriores a 1.12.13 permite a atacantes remotos provocar una denegación de servicio (bucle infinito) a través de un paquete manipulado. Multiple vulnerabilities were discovered in the dissectors for NDS, PacketBB, WSP, MMSE, RLC, LDSS, RLC and OpenFl... • http://openwall.com/lists/oss-security/2016/07/28/3 • CWE-399: Resource Management Errors •

CVE-2016-6509 – Debian Security Advisory 3648-1
https://notcve.org/view.php?id=CVE-2016-6509
06 Aug 2016 — epan/dissectors/packet-ldss.c in the LDSS dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 mishandles conversations, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. epan/dissectors/packet-ldss.c en el disector LDSS en Wireshark 1.12.x en versiones anteriores a 1.12.13 y 2.x en versiones anteriores a 2.0.5 no maneja adecuadamente conversaciones, lo que permite a atacantes remotos provocar una denegación de servicio (caída de aplicación) a ... • http://openwall.com/lists/oss-security/2016/07/28/3 • CWE-20: Improper Input Validation •

CVE-2016-6512 – Wireshark 2.0.0 < 2.0.4 - MMSE / WAP / WBXML / WSP Dissectors Denial of Service
https://notcve.org/view.php?id=CVE-2016-6512
06 Aug 2016 — epan/dissectors/packet-wap.c in Wireshark 2.x before 2.0.5 omits an overflow check in the tvb_get_guintvar function, which allows remote attackers to cause a denial of service (infinite loop) via a crafted packet, related to the MMSE, WAP, WBXML, and WSP dissectors. epan/dissectors/packet-wap.c in Wireshark 2.x en versiones anteriores a 2.0.5 omite una comprobación de desbordamiento en la función tvb_get_guintvar, lo que permite a atacantes remotos provocar una denegación de servicio (bucle infinito) a trav... • https://www.exploit-db.com/exploits/40195 • CWE-20: Improper Input Validation •

CVE-2016-5356 – Debian Security Advisory 3615-1
https://notcve.org/view.php?id=CVE-2016-5356
02 Jul 2016 — wiretap/cosine.c in the CoSine file parser in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles sscanf unsigned-integer processing, which allows remote attackers to cause a denial of service (application crash) via a crafted file. wiretap/cosine.c en el analizador de archivo CoSine en Wireshark 1.12.x en versiones anteriores a 1.12.12 y 2.x en versiones anteriores a 2.0.4 no maneja correctamente procesamiento sin signo de entero sscanf, lo que permite a atacantes remotos provocar una denegació... • http://www.debian.org/security/2016/dsa-3615 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-5350 – Debian Security Advisory 3615-1
https://notcve.org/view.php?id=CVE-2016-5350
02 Jul 2016 — epan/dissectors/packet-dcerpc-spoolss.c in the SPOOLS component in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles unexpected offsets, which allows remote attackers to cause a denial of service (infinite loop) via a crafted packet. epan/dissectors/packet-dcerpc-spoolss.c en el componente SPOOLS en Wireshark 1.12.x en versiones anteriores a 1.12.12 y 2.x en versiones anteriores a 2.0.4 no maneja correctamente offsets no esperados, lo que permite a atacantes remotos provocar una denegación de ... • http://www.debian.org/security/2016/dsa-3615 • CWE-399: Resource Management Errors •

CVE-2016-5351 – Debian Security Advisory 3615-1
https://notcve.org/view.php?id=CVE-2016-5351
02 Jul 2016 — epan/crypt/airpdcap.c in the IEEE 802.11 dissector in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles the lack of an EAPOL_RSN_KEY, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. epan/crypt/airpdcap.c en el disector IEEE 802.11 en Wireshark 1.12.x en versiones anteriores a 1.12.12 y 2.x en versiones anteriores a 2.0.4 no maneja correctamente la falta de una EAPOL_RSN_KEY, lo que permite a atacantes remotos provocar una denegación de servi... • http://www.debian.org/security/2016/dsa-3615 • CWE-20: Improper Input Validation •