Show filters
335 Total Results
Displaying 121-130 of 335
Sort by:
Attacker Value
Unknown
CVE-2013-2478
Disclosure Date: March 07, 2013 (last updated October 05, 2023)
The dissect_server_info function in epan/dissectors/packet-ms-mms.c in the MS-MMS dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 does not properly manage string lengths, which allows remote attackers to cause a denial of service (application crash) via a malformed packet that (1) triggers an integer overflow or (2) has embedded '\0' characters in a string.
0
Attacker Value
Unknown
CVE-2013-2480
Disclosure Date: March 07, 2013 (last updated October 05, 2023)
The RTPS and RTPS2 dissectors in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 allow remote attackers to cause a denial of service (application crash) via a malformed packet.
0
Attacker Value
Unknown
CVE-2013-2488
Disclosure Date: March 07, 2013 (last updated October 05, 2023)
The DTLS dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 does not validate the fragment offset before invoking the reassembly state machine, which allows remote attackers to cause a denial of service (application crash) via a large offset value that triggers write access to an invalid memory location.
0
Attacker Value
Unknown
CVE-2013-2476
Disclosure Date: March 07, 2013 (last updated October 05, 2023)
The dissect_hartip function in epan/dissectors/packet-hartip.c in the HART/IP dissector in Wireshark 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (infinite loop) via a packet with a header that is too short.
0
Attacker Value
Unknown
CVE-2013-2479
Disclosure Date: March 07, 2013 (last updated October 05, 2023)
The dissect_mpls_echo_tlv_dd_map function in epan/dissectors/packet-mpls-echo.c in the MPLS Echo dissector in Wireshark 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (infinite loop) via invalid Sub-tlv data.
0
Attacker Value
Unknown
CVE-2013-2484
Disclosure Date: March 07, 2013 (last updated October 05, 2023)
The CIMD dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (application crash) via a malformed packet.
0
Attacker Value
Unknown
CVE-2013-2475
Disclosure Date: March 07, 2013 (last updated October 05, 2023)
The TCP dissector in Wireshark 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (application crash) via a malformed packet.
0
Attacker Value
Unknown
CVE-2013-2485
Disclosure Date: March 07, 2013 (last updated October 05, 2023)
The FCSP dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (infinite loop) via a malformed packet.
0
Attacker Value
Unknown
CVE-2013-2487
Disclosure Date: March 07, 2013 (last updated October 05, 2023)
epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark 1.8.x before 1.8.6 uses incorrect integer data types, which allows remote attackers to cause a denial of service (infinite loop) via crafted integer values in a packet, related to the (1) dissect_icecandidates, (2) dissect_kinddata, (3) dissect_nodeid_list, (4) dissect_storeans, (5) dissect_storereq, (6) dissect_storeddataspecifier, (7) dissect_fetchreq, (8) dissect_findans, (9) dissect_diagnosticinfo, (10) dissect_diagnosticresponse, (11) dissect_reload_messagecontents, and (12) dissect_reload_message functions, a different vulnerability than CVE-2013-2486.
0
Attacker Value
Unknown
CVE-2013-2486
Disclosure Date: March 07, 2013 (last updated October 05, 2023)
The dissect_diagnosticrequest function in epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark 1.8.x before 1.8.6 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (infinite loop) via crafted integer values in a packet.
0