Show filters
9 Total Results
Displaying 1-9 of 9
Sort by:
Attacker Value
Unknown

CVE-2018-11357

Disclosure Date: May 22, 2018 (last updated November 08, 2023)
In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the LTP dissector and other dissectors could consume excessive memory. This was addressed in epan/tvbuff.c by rejecting negative lengths.
0
Attacker Value
Unknown

CVE-2018-11355

Disclosure Date: May 22, 2018 (last updated November 08, 2023)
In Wireshark 2.6.0, the RTCP dissector could crash. This was addressed in epan/dissectors/packet-rtcp.c by avoiding a buffer overflow for packet status chunks.
0
Attacker Value
Unknown

CVE-2018-11358

Disclosure Date: May 22, 2018 (last updated November 08, 2023)
In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the Q.931 dissector could crash. This was addressed in epan/dissectors/packet-q931.c by avoiding a use-after-free after a malformed packet prevented certain cleanup.
0
Attacker Value
Unknown

CVE-2018-11354

Disclosure Date: May 22, 2018 (last updated November 08, 2023)
In Wireshark 2.6.0, the IEEE 1905.1a dissector could crash. This was addressed in epan/dissectors/packet-ieee1905.c by making a certain correction to string handling.
0
Attacker Value
Unknown

CVE-2018-11359

Disclosure Date: May 22, 2018 (last updated November 08, 2023)
In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the RRC dissector and other dissectors could crash. This was addressed in epan/proto.c by avoiding a NULL pointer dereference.
0
Attacker Value
Unknown

CVE-2018-11356

Disclosure Date: May 22, 2018 (last updated November 08, 2023)
In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the DNS dissector could crash. This was addressed in epan/dissectors/packet-dns.c by avoiding a NULL pointer dereference for an empty name in an SRV record.
0
Attacker Value
Unknown

CVE-2018-11360

Disclosure Date: May 22, 2018 (last updated November 08, 2023)
In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the GSM A DTAP dissector could crash. This was addressed in epan/dissectors/packet-gsm_a_dtap.c by fixing an off-by-one error that caused a buffer overflow.
0
Attacker Value
Unknown

CVE-2018-11361

Disclosure Date: May 22, 2018 (last updated November 08, 2023)
In Wireshark 2.6.0, the IEEE 802.11 protocol dissector could crash. This was addressed in epan/crypt/dot11decrypt.c by avoiding a buffer overflow during FTE processing in Dot11DecryptTDLSDeriveKey.
0
Attacker Value
Unknown

CVE-2018-11362

Disclosure Date: May 22, 2018 (last updated November 08, 2023)
In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the LDSS dissector could crash. This was addressed in epan/dissectors/packet-ldss.c by avoiding a buffer over-read upon encountering a missing '\0' character.
0