← Back

Wireshark

wireshark

736 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Wireshark
wireshark

CVEs (736)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Wireshark
1Wireshark
May 7, 2025
Nov 21, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file
1Wireshark
1Wireshark
Nov 25, 2024
Oct 10, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
AppleTalk and RELOAD Framing dissector crash in Wireshark 4.4.0 and 4.2.0 to 4.2.7 allows denial of service via packet injection or crafted capture file
1Wireshark
1Wireshark
Oct 17, 2024
Oct 10, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
ITS dissector crash in Wireshark 4.4.0 allows denial of service via packet injection or crafted capture file
1Wireshark
1Wireshark
Nov 3, 2025
Sep 10, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
SPRT dissector crash in Wireshark 4.2.0 to 4.0.5 and 4.0.0 to 4.0.15 allows denial of service via packet injection or crafted capture file
1Wireshark
1Wireshark
Nov 3, 2025
Aug 29, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
NTLMSSP dissector crash in Wireshark 4.2.0 to 4.0.6 and 4.0.0 to 4.0.16 allows denial of service via packet injection or crafted capture file
2Fedoraproject
Wireshark
2Fedora
Wireshark
Aug 7, 2025
May 14, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Use after free issue in editcap could cause denial of service via crafted capture file
2Fedoraproject
Wireshark
2Fedora
Wireshark
Nov 3, 2025
May 14, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
MONGO and ZigBee TLV dissector infinite loops in Wireshark 4.2.0 to 4.2.4, 4.0.0 to 4.0.14, and 3.6.0 to 3.6.22 allow denial of service via packet injection or crafted capture file
2Fedoraproject
Wireshark
2Fedora
Wireshark
Nov 3, 2025
May 14, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Memory handling issue in editcap could cause denial of service via crafted capture file
2Fedoraproject
Wireshark
2Fedora
Wireshark
Nov 3, 2025
Mar 26, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
T.38 dissector crash in Wireshark 4.2.0 to 4.0.3 and 4.0.0 to 4.0.13 allows denial of service via packet injection or crafted capture file
1Wireshark
1Wireshark
Nov 4, 2025
Mar 26, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
NetScreen file parser crash in Wireshark 4.0.0 to 4.0.10 and 3.6.0 to 3.6.18 allows denial of service via crafted capture file
2Fedoraproject
Wireshark
2Fedora
Wireshark
Nov 4, 2025
Feb 21, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
A Buffer Overflow in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the wsutil/to_str.c, and format_fractional_part_nsecs components. NOTE: this is disputed by the vendor because neither...Show more
A Buffer Overflow in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the wsutil/to_str.c, and format_fractional_part_nsecs components. NOTE: this is disputed by the vendor because neither release 4.2.0 nor any other release was affected.Show less
2Fedoraproject
Wireshark
2Fedora
Wireshark
Nov 4, 2025
Feb 21, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
A buffer overflow in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the pan/addr_resolv.c, and ws_manuf_lookup_str(), size components. NOTE: this is disputed by the vendor because neithe...Show more
A buffer overflow in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the pan/addr_resolv.c, and ws_manuf_lookup_str(), size components. NOTE: this is disputed by the vendor because neither release 4.2.0 nor any other release was affected.Show less
1Wireshark
1Wireshark
Apr 14, 2025
Feb 21, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
An issue in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the packet-bgp.c, dissect_bgp_open(tvbuff_t*tvb, proto_tree*tree, packet_info*pinfo), optlen components. NOTE: this is disputed...Show more
An issue in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the packet-bgp.c, dissect_bgp_open(tvbuff_t*tvb, proto_tree*tree, packet_info*pinfo), optlen components. NOTE: this is disputed by the vendor because neither release 4.2.0 nor any other release was affected.Show less
1Wireshark
1Wireshark
Nov 3, 2025
Jan 3, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
DOCSIS dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or crafted capture file
1Wireshark
1Wireshark
Nov 21, 2024
Jan 3, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
Zigbee TLV dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or crafted capture file
1Wireshark
1Wireshark
Nov 3, 2025
Jan 3, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
IEEE 1609.2 dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet injection or crafted capture file
1Wireshark
1Wireshark
Nov 3, 2025
Jan 3, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
GVCP dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet injection or crafted capture file
1Wireshark
1Wireshark
Nov 21, 2024
Jan 3, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
HTTP3 dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or crafted capture file
2Debian
Wireshark
2Debian Linux
Wireshark
Nov 21, 2024
Nov 16, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
SSH dissector crash in Wireshark 4.0.0 to 4.0.10 allows denial of service via packet injection or crafted capture file
1Wireshark
1Wireshark
Nov 21, 2024
Oct 4, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
RTPS dissector memory leak in Wireshark 4.0.0 to 4.0.8 and 3.6.0 to 3.6.16 allows denial of service via packet injection or crafted capture file