CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
103289 | CVE-2017-6469 | Candidate | In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is an LDSS dissector crash, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-ldss.c by ensuring that memory is allocated for a certain data structure. | Assigned (20170303) | None (candidate not yet proposed) | View | |
103290 | CVE-2017-6470 | Candidate | In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is an IAX2 infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-iax2.c by constraining packet lateness. | Assigned (20170303) | None (candidate not yet proposed) | View | |
103291 | CVE-2017-6471 | Candidate | In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a WSP infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-wsp.c by validating the capability length. | Assigned (20170303) | None (candidate not yet proposed) | View | |
103292 | CVE-2017-6472 | Candidate | In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is an RTMPT dissector infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-rtmpt.c by properly incrementing a certain sequence value. | Assigned (20170303) | None (candidate not yet proposed) | View | |
103293 | CVE-2017-6473 | Candidate | In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a K12 file parser crash, triggered by a malformed capture file. This was addressed in wiretap/k12.c by validating the relationships between lengths and offsets. | Assigned (20170303) | None (candidate not yet proposed) | View |
Page 20052 of 20943, showing 5 records out of 104715 total, starting on record 100256, ending on 100260