296,213
Total vulnerabilities in the database
The read_new_line function in wiretap/catapult_dct2000.c in the Catapult DCT2000 dissector in Wireshark 1.10.x before 1.10.9 does not properly strip '\n' and '\r' characters, which allows remote attackers to cause a denial of service (off-by-one buffer underflow and application crash) via a crafted packet.
Software | From | Fixed in |
---|---|---|
wireshark / wireshark | 1.10.8 | 1.10.8.x |
wireshark / wireshark | 1.10.6 | 1.10.6.x |
wireshark / wireshark | 1.10.0 | 1.10.0.x |
wireshark / wireshark | 1.10.3 | 1.10.3.x |
wireshark / wireshark | 1.10.2 | 1.10.2.x |
wireshark / wireshark | 1.10.1 | 1.10.1.x |
wireshark / wireshark | 1.10.7 | 1.10.7.x |
wireshark / wireshark | 1.10.4 | 1.10.4.x |
wireshark / wireshark | 1.10.5 | 1.10.5.x |