This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:wireshark:wireshark:0.10.14
Detail
VendorWiresharkFirst view 2006-07-21
ProductWiresharkLast view 2010-08-13
Version0.10.14TypeApplication
Edition 
Language 
Update 
 
CPE Productcpe:/a:wireshark:wireshark

Activity : Yearly

Related : CVE

 DateAlertAccess VectorAccess ComplexityAuthentification
102010-08-13CVE-2010-2995NetworkLowNone Requ...
102010-08-13CVE-2010-2994NetworkLowNone Requ...
8.32010-06-15CVE-2010-2287Adjacent ...LowNone Requ...
3.32010-06-15CVE-2010-2286Adjacent ...LowNone Requ...
3.32010-06-15CVE-2010-2285Adjacent ...LowNone Requ...
Hide | Show 13 More...
 DateAlertAccess VectorAccess ComplexityAuthentification
8.32010-06-15CVE-2010-2284Adjacent ...LowNone Requ...
9.32009-10-30CVE-2009-3829NetworkMediumNone Requ...
4.32009-10-30CVE-2009-3550NetworkMediumNone Requ...
102009-04-21CVE-2009-1266NetworkLowNone Requ...
102009-04-01CVE-2009-1210NetworkLowNone Requ...
52008-12-01CVE-2008-5285NetworkLowNone Requ...
3.32008-09-04CVE-2008-3933Adjacent ...LowNone Requ...
52008-09-04CVE-2008-3932NetworkLowNone Requ...
52007-11-23CVE-2007-6117NetworkLowNone Requ...
4.32007-11-23CVE-2007-6113NetworkMediumNone Requ...
52007-06-25CVE-2007-3390NetworkLowNone Requ...
4.32007-02-02CVE-2007-0457NetworkMediumNone Requ...
52006-07-21CVE-2006-3627NetworkLowNone Requ...

CWE : Common Weakness Enumeration

%idName
25% (3)CWE-399Resource Management Errors
25% (3)CWE-189Numeric Errors
25% (3)CWE-119Failure to Constrain Operations within the Bounds of a Memory Buffer
16% (2)CWE-20Improper Input Validation
8% (1)CWE-134Uncontrolled Format String

CAPEC : Common Attack Pattern Enumeration & Classificatio

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
idName
CAPEC-3Using Leading 'Ghost' Character Sequences to Bypass Input Filters
CAPEC-7Blind SQL Injection
CAPEC-8Buffer Overflow in an API Call
CAPEC-9Buffer Overflow in Local Command-Line Utilities
CAPEC-10Buffer Overflow via Environment Variables
Hide | Show 20 More...
idName
CAPEC-13Subverting Environment Variable Values
CAPEC-14Client-side Injection-induced Buffer Overflow
CAPEC-18Embedding Scripts in Nonscript Elements
CAPEC-22Exploiting Trust in Client (aka Make the Client Invisible)
CAPEC-24Filter Failure through Buffer Overflow
CAPEC-28Fuzzing
CAPEC-31Accessing/Intercepting/Modifying HTTP Cookies
CAPEC-32Embedding Scripts in HTTP Query Strings
CAPEC-42MIME Conversion
CAPEC-43Exploiting Multiple Input Interpretation Layers
CAPEC-45Buffer Overflow via Symbolic Links
CAPEC-46Overflow Variables and Tags
CAPEC-47Buffer Overflow via Parameter Expansion
CAPEC-52Embedding NULL Bytes
CAPEC-53Postfix, Null Terminate, and Backslash
CAPEC-63Simple Script Injection
CAPEC-64Using Slashes and URL Encoding Combined to Bypass Validation Logic
CAPEC-66SQL Injection
CAPEC-67String Format Overflow in syslog()
CAPEC-71Using Unicode Encoding to Bypass Validation Logic

Oval Markup Language : Definitions

OvalIDName
oval:org.mitre.oval:def:11307Unspecified vulnerability in the GSM BSSMAP dissector in Wireshark (aka Ether...
oval:org.mitre.oval:def:11003Unspecified vulnerability in the IEEE 802.11 dissector in Wireshark (formerly...
oval:org.mitre.oval:def:10865Wireshark 0.99.5 and 0.10.x up to 0.10.14, when running on certain systems, a...
oval:org.mitre.oval:def:9841Integer signedness error in the DNP3 dissector in Wireshark (formerly Etherea...
oval:org.mitre.oval:def:11508Unspecified vulnerability in the HTTP dissector for Wireshark (formerly Ether...
Hide | Show 15 More...
idName
oval:org.mitre.oval:def:11273Wireshark (formerly Ethereal) 0.9.7 through 1.0.2 allows attackers to cause a...
oval:org.mitre.oval:def:9620Wireshark (formerly Ethereal) 0.10.14 through 1.0.2 allows attackers to cause...
oval:org.mitre.oval:def:11351Wireshark 1.0.4 and earlier allows remote attackers to cause a denial of serv...
oval:org.mitre.oval:def:9526Format string vulnerability in the PROFINET/DCP (PN-DCP) dissector in Wiresha...
oval:org.mitre.oval:def:5976Wireshark PROFINET/DCP (PN-DCP) dissector Denial of Service Vulnerability
oval:org.mitre.oval:def:6005Wireshark DoS Vulnerability due to the DCERPC/NT dissector
oval:org.mitre.oval:def:10103The DCERPC/NT dissector in Wireshark 0.10.10 through 1.0.9 and 1.2.0 through ...
oval:org.mitre.oval:def:9945Integer overflow in wiretap/erf.c in Wireshark before 1.2.2 allows remote att...
oval:org.mitre.oval:def:5979Wireshark Integer overflow vulnerability in wiretap/erf.c
oval:org.mitre.oval:def:11888Wireshark Dissector LWRES Multiple Buffer Overflow Vulnerabilities
oval:org.mitre.oval:def:11488Wireshark Dissector LWRES Multiple Buffer Overflow Vulnerabilities
oval:org.mitre.oval:def:11792Wireshark Dissector LWRES Multiple Buffer Overflow Vulnerabilities
oval:org.mitre.oval:def:11836Wireshark Dissector LWRES Multiple Buffer Overflow Vulnerabilities
oval:org.mitre.oval:def:12047Stack-based buffer overflow in the ASN.1 BER dissector in Wireshark
oval:org.mitre.oval:def:12049Vulnerability in SigComp Universal Decompressor Virtual Machine (UDVM) in Wir...

Open Source Vulnerability Database (OSVDB)

idDescription
67191Wireshark SigComp Universal Decompressor Virtual Machine sigcomp-udvm.c Off-b...
65375Wireshark SigComp Universal Decompressor Virtual Machine Overflow
65374Wireshark SigComp Universal Decompressor Virtual Machine Infinite Loop DoS
65373Wireshark SMB PIPE Dissector NULL Dereference DoS
65372Wireshark ASN.1 BER Dissector Overflow
Hide | Show 12 More...
idDescription
59478Wireshark wiretap/erf.c Unsigned Integer Wrap ERF File Handling Overflow
59460Wireshark DCERPC/NT Dissector Unspecified DoS
53903Wireshark Unspecified Issue
52996Wireshark PN-DCP Dissector Station Name Handling Format String
50069Wireshark SMTP Dissector Packet Handling Infinite Loop DoS
47933Wireshark zlib-compressed Packet Data Uncompression DoS
47932Wireshark NCP Dissector Unspecified Infinite Loop DoS
40456Wireshark DNP3 Dissector Malformed Packet Handling Remote Infinite Loop DoS
40453Wireshark HTTP Dissector Chunked Message Handling Unspecified Remote Issue
37642Wireshark Crafted iSeries Capture File Handling Remote DoS
33074Wireshark IEEE 802.11 Dissector Unspecified DoS
27360Wireshark GSM BSSMAP Dissector Unspecified DoS

Milw0rm Exploits

idDescription
2009-03-30Wireshark <= 1.0.6 PN-DCP Format String Exploit PoC
2007-08-31Wireshark < 0.99.5 DNP3 Dissector Infinite Loop Exploit