← Back

Wireshark

wireshark

748 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Wireshark
wireshark

CVEs (748)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Wireshark
1Wireshark
Apr 23, 2026
Apr 13, 2009
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unspecified vulnerability in the LDAP dissector in Wireshark 0.99.2 through 1.0.6, when running on Windows, allows remote attackers to cause a denial of service (crash) via unknown attack vectors.
1Wireshark
1Wireshark
Apr 23, 2026
Apr 1, 2009
N/A· v4
N/A· v3
10.0 HIGH· v2
Format string vulnerability in the PROFINET/DCP (PN-DCP) dissector in Wireshark 1.0.6 and earlier allows remote attackers to execute arbitrary code via a PN-DCP packet with format string specifiers in the station name....Show more
Format string vulnerability in the PROFINET/DCP (PN-DCP) dissector in Wireshark 1.0.6 and earlier allows remote attackers to execute arbitrary code via a PN-DCP packet with format string specifiers in the station name. NOTE: some of these details are obtained from third party information.Show less
1Wireshark
1Wireshark
Apr 23, 2026
Mar 14, 2009
N/A· v4
N/A· v3
4.3 MEDIUM· v2
The WLCCP dissector in Wireshark 0.99.7 through 1.0.4 allows remote attackers to cause a denial of service (infinite loop) via unspecified vectors.
1Wireshark
1Wireshark
Apr 23, 2026
Feb 16, 2009
N/A· v4
N/A· v3
2.1 LOW· v2
Format string vulnerability in Wireshark 0.99.8 through 1.0.5 on non-Windows platforms allows local users to cause a denial of service (application crash) via format string specifiers in the HOME environment variable.
1Wireshark
1Wireshark
Apr 23, 2026
Feb 16, 2009
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Wireshark 0.99.6 through 1.0.5 allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted Tektronix K12 text capture file, as demonstrated by a file with exactly one frame.
1Wireshark
1Wireshark
Apr 23, 2026
Feb 16, 2009
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in wiretap/netscreen.c in Wireshark 0.99.7 through 1.0.5 allows user-assisted remote attackers to cause a denial of service (application crash) via a malformed NetScreen snoop file.
1Wireshark
1Wireshark
Apr 23, 2026
Dec 1, 2008
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Wireshark 1.0.4 and earlier allows remote attackers to cause a denial of service via a long SMTP request, which triggers an infinite loop.
1Wireshark
1Wireshark
Apr 23, 2026
Oct 22, 2008
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Use-after-free vulnerability in the dissect_q931_cause_ie function in packet-q931.c in the Q.931 dissector in Wireshark 0.10.3 through 1.0.3 allows remote attackers to cause a denial of service (application crash or abor...Show more
Use-after-free vulnerability in the dissect_q931_cause_ie function in packet-q931.c in the Q.931 dissector in Wireshark 0.10.3 through 1.0.3 allows remote attackers to cause a denial of service (application crash or abort) via certain packets that trigger an exception.Show less
1Wireshark
1Wireshark
Apr 23, 2026
Oct 22, 2008
N/A· v4
N/A· v3
4.3 MEDIUM· v2
packet-frame in Wireshark 0.99.2 through 1.0.3 does not properly handle exceptions thrown by post dissectors, which allows remote attackers to cause a denial of service (application crash) via a certain series of packets...Show more
packet-frame in Wireshark 0.99.2 through 1.0.3 does not properly handle exceptions thrown by post dissectors, which allows remote attackers to cause a denial of service (application crash) via a certain series of packets, as demonstrated by enabling the (1) PRP or (2) MATE post dissector.Show less
1Wireshark
1Wireshark
Apr 23, 2026
Oct 22, 2008
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The dissect_btacl function in packet-bthci_acl.c in the Bluetooth ACL dissector in Wireshark 0.99.2 through 1.0.3 allows remote attackers to cause a denial of service (application crash or abort) via a packet with an inv...Show more
The dissect_btacl function in packet-bthci_acl.c in the Bluetooth ACL dissector in Wireshark 0.99.2 through 1.0.3 allows remote attackers to cause a denial of service (application crash or abort) via a packet with an invalid length, related to an erroneous tvb_memcpy call.Show less
1Wireshark
1Wireshark
Apr 23, 2026
Oct 22, 2008
N/A· v4
N/A· v3
5.0 MEDIUM· v2
wtap.c in Wireshark 0.99.7 through 1.0.3 allows remote attackers to cause a denial of service (application abort) via a malformed Tamos CommView capture file (aka .ncf file) with an "unknown/unexpected packet type" that...Show more
wtap.c in Wireshark 0.99.7 through 1.0.3 allows remote attackers to cause a denial of service (application abort) via a malformed Tamos CommView capture file (aka .ncf file) with an "unknown/unexpected packet type" that triggers a failed assertion.Show less
1Wireshark
1Wireshark
Apr 23, 2026
Oct 22, 2008
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Unspecified vulnerability in the Bluetooth RFCOMM dissector in Wireshark 0.99.7 through 1.0.3 allows remote attackers to cause a denial of service (application crash or abort) via unknown packets.
1Wireshark
1Wireshark
Apr 23, 2026
Oct 22, 2008
N/A· v4
N/A· v3
4.3 MEDIUM· v2
packet-usb.c in the USB dissector in Wireshark 0.99.7 through 1.0.3 allows remote attackers to cause a denial of service (application crash or abort) via a malformed USB Request Block (URB).
1Wireshark
1Wireshark
Apr 23, 2026
Sep 4, 2008
N/A· v4
N/A· v3
3.3 LOW· v2
Unspecified vulnerability in Wireshark (formerly Ethereal) 0.99.6 through 1.0.2 allows attackers to cause a denial of service (crash) via a crafted Tektronix .rf5 file.
1Wireshark
1Wireshark
Apr 23, 2026
Sep 4, 2008
N/A· v4
N/A· v3
3.3 LOW· v2
Wireshark (formerly Ethereal) 0.10.14 through 1.0.2 allows attackers to cause a denial of service (crash) via a packet with crafted zlib-compressed data that triggers an invalid read in the tvb_uncompress function.
1Wireshark
1Wireshark
Apr 23, 2026
Sep 4, 2008
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Wireshark (formerly Ethereal) 0.9.7 through 1.0.2 allows attackers to cause a denial of service (hang) via a crafted NCP packet that triggers an infinite loop.
1Wireshark
1Wireshark
Apr 23, 2026
Sep 2, 2008
N/A· v4
N/A· v3
10.0 HIGH· v2
Multiple buffer overflows in packet_ncp2222.inc in Wireshark (formerly Ethereal) 0.9.7 through 1.0.2 allow attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted NCP...Show more
Multiple buffer overflows in packet_ncp2222.inc in Wireshark (formerly Ethereal) 0.9.7 through 1.0.2 allow attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted NCP packet that causes an invalid pointer to be used.Show less
1Wireshark
1Wireshark
Apr 23, 2026
Jul 16, 2008
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The fragment_add_work function in epan/reassemble.c in Wireshark 0.8.19 through 1.0.1 allows remote attackers to cause a denial of service (crash) via a series of fragmented packets with non-sequential fragmentation offs...Show more
The fragment_add_work function in epan/reassemble.c in Wireshark 0.8.19 through 1.0.1 allows remote attackers to cause a denial of service (crash) via a series of fragmented packets with non-sequential fragmentation offset values, which lead to a buffer over-read.Show less
1Wireshark
1Wireshark
Apr 23, 2026
Jul 10, 2008
N/A· v4
N/A· v3
4.9 MEDIUM· v2
Unspecified vulnerability in the RMI dissector in Wireshark (formerly Ethereal) 0.9.5 through 1.0.0 allows remote attackers to read system memory via unspecified vectors.
1Wireshark
1Wireshark
Apr 23, 2026
Jul 10, 2008
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The syslog dissector in Wireshark (formerly Ethereal) 1.0.0 allows remote attackers to cause a denial of service (application crash) via unknown vectors, possibly related to an "incomplete SS7 MSU syslog encapsulated pac...Show more
The syslog dissector in Wireshark (formerly Ethereal) 1.0.0 allows remote attackers to cause a denial of service (application crash) via unknown vectors, possibly related to an "incomplete SS7 MSU syslog encapsulated packet."Show less