Vulnerabilities > Opensuse > Opensuse > 12.1
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2013-03-07 | CVE-2013-2488 | Improper Input Validation vulnerability in multiple products The DTLS dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 does not validate the fragment offset before invoking the reassembly state machine, which allows remote attackers to cause a denial of service (application crash) via a large offset value that triggers write access to an invalid memory location. | 5.0 |
2013-03-07 | CVE-2013-2487 | Numeric Errors vulnerability in multiple products epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark 1.8.x before 1.8.6 uses incorrect integer data types, which allows remote attackers to cause a denial of service (infinite loop) via crafted integer values in a packet, related to the (1) dissect_icecandidates, (2) dissect_kinddata, (3) dissect_nodeid_list, (4) dissect_storeans, (5) dissect_storereq, (6) dissect_storeddataspecifier, (7) dissect_fetchreq, (8) dissect_findans, (9) dissect_diagnosticinfo, (10) dissect_diagnosticresponse, (11) dissect_reload_messagecontents, and (12) dissect_reload_message functions, a different vulnerability than CVE-2013-2486. | 7.8 |
2013-03-07 | CVE-2013-2486 | Numeric Errors vulnerability in multiple products The dissect_diagnosticrequest function in epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark 1.8.x before 1.8.6 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (infinite loop) via crafted integer values in a packet. | 6.1 |
2013-03-07 | CVE-2013-2485 | Denial of Service vulnerability in Wireshark FCSP Dissector The FCSP dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (infinite loop) via a malformed packet. | 6.1 |
2013-03-07 | CVE-2013-2484 | Denial of Service vulnerability in Wireshark CIMD Dissector The CIMD dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (application crash) via a malformed packet. | 3.3 |
2013-03-07 | CVE-2013-2483 | Numeric Errors vulnerability in multiple products The acn_add_dmp_data function in epan/dissectors/packet-acn.c in the ACN dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via an invalid count value in ACN_DMP_ADT_D_RE DMP data. | 3.3 |
2013-03-07 | CVE-2013-2482 | Denial of Service vulnerability in Wireshark AMPQ Dissector The AMPQ dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (infinite loop) via a malformed packet. | 6.1 |
2013-03-07 | CVE-2013-2481 | Numeric Errors vulnerability in multiple products Integer signedness error in the dissect_mount_dirpath_call function in epan/dissectors/packet-mount.c in the Mount dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6, when nfs_file_name_snooping is enabled, allows remote attackers to cause a denial of service (application crash) via a negative length value. | 2.9 |
2013-03-07 | CVE-2013-2480 | Denial of Service vulnerability in Wireshark RTPS And RTPS2 Dissectors The RTPS and RTPS2 dissectors in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 allow remote attackers to cause a denial of service (application crash) via a malformed packet. | 3.3 |
2013-03-07 | CVE-2013-2479 | Denial of Service vulnerability in Wireshark MPLS Echo Dissector The dissect_mpls_echo_tlv_dd_map function in epan/dissectors/packet-mpls-echo.c in the MPLS Echo dissector in Wireshark 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (infinite loop) via invalid Sub-tlv data. | 3.3 |