Search CVE reports


Toggle filters

491 – 500 of 847 results


CVE-2015-3814

Low priority

Some fixes available 4 of 6

The (1) dissect_tfs_request and (2) dissect_tfs_response functions in epan/dissectors/packet-ieee80211.c in the IEEE 802.11 dissector in Wireshark 1.10.x before 1.10.14 and 1.12.x before 1.12.5 interpret a zero value as a length...

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Fixed
Show less packages

CVE-2015-3813

Low priority

Some fixes available 1 of 2

The fragment_add_work function in epan/reassemble.c in the packet-reassembly feature in Wireshark 1.12.x before 1.12.5 does not properly determine the defragmentation state in a case of an insufficient snapshot length, which...

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark
Show less packages

CVE-2015-3812

Low priority

Some fixes available 4 of 6

Multiple memory leaks in the x11_init_protocol function in epan/dissectors/packet-x11.c in the X11 dissector in Wireshark 1.10.x before 1.10.14 and 1.12.x before 1.12.5 allow remote attackers to cause a denial of service (memory...

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Fixed
Show less packages

CVE-2015-3811

Low priority

Some fixes available 4 of 6

epan/dissectors/packet-wcp.c in the WCP dissector in Wireshark 1.10.x before 1.10.14 and 1.12.x before 1.12.5 improperly refers to previously processed bytes, which allows remote attackers to cause a denial of service (application...

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Fixed
Show less packages

CVE-2015-3810

Low priority

Some fixes available 1 of 2

epan/dissectors/packet-websocket.c in the WebSocket dissector in Wireshark 1.12.x before 1.12.5 uses a recursive algorithm, which allows remote attackers to cause a denial of service (CPU consumption) via a crafted packet.

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark
Show less packages

CVE-2015-3809

Low priority

Some fixes available 4 of 6

The dissect_lbmr_pser function in epan/dissectors/packet-lbmr.c in the LBMR dissector in Wireshark 1.12.x before 1.12.5 does not properly track the current offset, which allows remote attackers to cause a denial of...

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Fixed
Show less packages

CVE-2015-3808

Low priority

Some fixes available 4 of 6

The dissect_lbmr_pser function in epan/dissectors/packet-lbmr.c in the LBMR dissector in Wireshark 1.12.x before 1.12.5 does not reject a zero length, which allows remote attackers to cause a denial of service (infinite loop) via...

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Fixed
Show less packages

CVE-2015-3885

Negligible priority

Some fixes available 2 of 53

Integer overflow in the ljpeg_start function in dcraw 7.00 and earlier allows remote attackers to cause a denial of service (crash) via a crafted image, which triggers a buffer overflow, related to the len variable.

10 affected packages

darktable, rawstudio, libraw, dcraw, freeimage...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
darktable Not affected Not affected Not affected Not affected
rawstudio Not in release Not in release Not in release Not in release
libraw Not affected Not affected Not affected Not affected
dcraw Not affected Not affected Not affected Not affected
freeimage Not affected Not affected Not affected Not affected
kodi Needs evaluation Not affected Not affected Not affected
exactimage Not affected Not affected Not affected Not affected
rawtherapee Not affected Not affected Not affected Not affected
ufraw Not in release Not in release Not in release Not affected
xbmc Not in release Not in release Not in release Not in release
Show all 10 packages Show less packages

CVE-2015-0846

Medium priority

Some fixes available 1 of 3

django-markupfield before 1.3.2 uses the default docutils RESTRUCTUREDTEXT_FILTER_SETTINGS settings, which allows remote attackers to include and read arbitrary files via unspecified vectors.

1 affected package

django-markupfield

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
django-markupfield Not affected
Show less packages

CVE-2015-2192

Low priority
Fixed

Integer overflow in the dissect_osd2_cdb_continuation function in epan/dissectors/packet-scsi-osd.c in the SCSI OSD dissector in Wireshark 1.12.x before 1.12.4 allows remote attackers to cause a denial of service (infinite loop)...

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark
Show less packages