Description
Multiple serious vulnerabilities were found in Wireshark. Malicious users can exploit these vulnerabilities to cause denial of service.
Below is a complete list of vulnerabilities:
- An unspecified vulnerability in BGP dissector can be exploited remotely via malformed packet to cause denial of service;
- An unspecified vulnerability in ISMP dissector can be exploited remotely via malformed packet to cause denial of service;
- An unspecified vulnerability can be exploited remotely via malformed packet to cause denial of service;
- An unspecified vulnerability in ASN.1 BER dissector can be exploited remotely via malformed packet to cause denial of service;
- An unspecified vulnerability in MMSE dissector can be exploited remotely via malformed packet to cause denial of service;
- An unspecified vulnerability in DICOM dissector can be exploited remotely via malformed packet to cause denial of service;
- An unspecified vulnerability in Bazaar protocol dissector can be exploited remotely via malformed packet to cause denial of service;
- An unspecified vulnerability in HTTP2 protocol dissector can be exploited remotely via malformed packet to cause denial of service;
- An unspecified vulnerability in CoAP protocol dissector can be exploited remotely via malformed packet to cause denial of service;
- An unspecified vulnerability in IEEE 802.11 protocol dissector can be exploited remotely via malformed packet to cause denial of service.
Original advisories
- wnpa-sec-2018-35
- wnpa-sec-2018-43
- wnpa-sec-2018-37
- wnpa-sec-2018-38
- wnpa-sec-2018-39
- wnpa-sec-2018-34
- wnpa-sec-2018-40
- wnpa-sec-2018-36
- wnpa-sec-2018-42
Related products
CVE list
- CVE-2018-14342 critical
- CVE-2018-14344 warning
- CVE-2018-14340 warning
- CVE-2018-14343 warning
- CVE-2018-14339 warning
- CVE-2018-14341 critical
- CVE-2018-14368 critical
- CVE-2018-14369 warning
- CVE-2018-14367 warning
- CVE-2018-14370 warning
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!