Vulnerabilities > Wireshark > Wireshark > 0.99.1

DATE CVE VULNERABILITY TITLE RISK
2007-06-26 CVE-2007-3389 Improper Input Validation vulnerability in Wireshark
Wireshark before 0.99.6 allows remote attackers to cause a denial of service (crash) via a crafted chunked encoding in an HTTP response, possibly related to a zero-length payload.
network
low complexity
wireshark CWE-20
5.0
2006-10-28 CVE-2006-5595 Remote Security vulnerability in Wireshark
Unspecified vulnerability in the AirPcap support in Wireshark (formerly Ethereal) 0.99.3 has unspecified attack vectors related to WEP key parsing.
network
low complexity
wireshark
5.0
2006-10-28 CVE-2006-5469 Protocol Dissectors Denial of Service vulnerability in Wireshark
Unspecified vulnerability in the WBXML dissector in Wireshark (formerly Ethereal) 0.10.11 through 0.99.3 allows remote attackers to cause a denial of service (crash) via certain vectors that trigger a null dereference.
network
low complexity
wireshark
5.0
2006-10-27 CVE-2006-4805 Protocol Dissectors Denial of Service vulnerability in Wireshark
epan/dissectors/packet-xot.c in the XOT dissector (dissect_xot_pdu) in Wireshark (formerly Ethereal) 0.9.8 through 0.99.3 allows remote attackers to cause a denial of service (memory consumption and crash) via an encoded XOT packet that produces a zero length value when it is decoded.
network
low complexity
wireshark
5.0
2006-08-24 CVE-2006-4333 Resource Management Errors vulnerability in Wireshark
The SSCOP dissector in Wireshark (formerly Ethereal) before 0.99.3 allows remote attackers to cause a denial of service (resource consumption) via malformed packets that cause the Q.2391 dissector to use excessive memory.
network
high complexity
wireshark CWE-399
5.4
2006-08-24 CVE-2006-4332 Multiple vulnerability in Wireshark
Unspecified vulnerability in the DHCP dissector in Wireshark (formerly Ethereal) 0.10.13 through 0.99.2, when run on Windows, allows remote attackers to cause a denial of service (crash) via unspecified vectors that trigger a bug in Glib.
network
low complexity
wireshark
5.0
2006-07-21 CVE-2006-3628 USE of Externally-Controlled Format String vulnerability in multiple products
Multiple format string vulnerabilities in Wireshark (aka Ethereal) 0.10.x to 0.99.0 allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) ANSI MAP, (2) Checkpoint FW-1, (3) MQ, (4) XML, and (5) NTP dissectors.
network
low complexity
ethereal-group wireshark CWE-134
critical
10.0