Wireshark

4 exploits Active since Sep 2011
CVE-2011-3483 EXPLOITDB text WRITEUP
Wireshark 1.6.x < 1.6.2 - Denial of Service via Malformed Capture File
Wireshark 1.6.x before 1.6.2 allows remote attackers to cause a denial of service (application crash) via a malformed capture file that leads to an invalid root tvbuff, related to a "buffer exception handling vulnerability."
CVE-2012-1593 EXPLOITDB text WRITEUP
Wireshark 1.4.x < 1.4.12 and 1.6.x < 1.6.6 - Denial of Service via Malformed ANSI A Packet
epan/dissectors/packet-ansi_a.c in the ANSI A dissector in Wireshark 1.4.x before 1.4.12 and 1.6.x before 1.6.6 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a malformed packet.
CVE-2012-2393 EXPLOITDB text WORKING POC
Wireshark 1.4.x < 1.4.13 and 1.6.x < 1.6.8 - Denial of Service in DIAMETER Dissector
epan/dissectors/packet-diameter.c in the DIAMETER dissector in Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 does not properly construct certain array data structures, which allows remote attackers to cause a denial of service (application crash) via a crafted packet that triggers incorrect memory allocation.
CVE-2017-17085 EXPLOITDB HIGH text WRITEUP
Wireshark 2.4.0-2.4.2 and 2.2.0-2.2.10 - Denial of Service in CIP Safety Dissector
In Wireshark 2.4.0 to 2.4.2 and 2.2.0 to 2.2.10, the CIP Safety dissector could crash. This was addressed in epan/dissectors/packet-cipsafety.c by validating the packet length.
CVSS 7.5