<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 14:55:39 +0000</lastBuildDate>
    <item>
      <title>ALSA-2023:6469 — Moderate: wireshark security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2023:6469</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: wireshark, AlmaLinux:9: wireshark-cli, AlmaLinux:9: wireshark-devel&lt;/p&gt;
&lt;p&gt;The wireshark packages contain a network protocol analyzer used to capture and browse the traffic running on a computer network.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* wireshark: RTPS dissector crash (CVE-2023-0666)
* wireshark: IEEE C37.118 Synchrophasor dissector crash (CVE-2023-0668)
* wireshark: Candump log file parser crash (CVE-2023-2855)
* wireshark: VMS TCPIPtrace file parser crash (CVE-2023-2856)
* wireshark: NetScaler file parser crash (CVE-2023-2858)
* wireshark: XRA dissector infinite loop (CVE-2023-2952)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: wireshark, AlmaLinux:9: wireshark-cli, AlmaLinux:9: wireshark-devel&lt;/p&gt;
&lt;p&gt;The wireshark packages contain a network protocol analyzer used to capture and browse the traffic running on a computer network.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* wireshark: RTPS dissector crash (CVE-2023-0666)
* wireshark: IEEE C37.118 Synchrophasor dissector crash (CVE-2023-0668)
* wireshark: Candump log file parser crash (CVE-2023-2855)
* wireshark: VMS TCPIPtrace file parser crash (CVE-2023-2856)
* wireshark: NetScaler file parser crash (CVE-2023-2858)
* wireshark: XRA dissector infinite loop (CVE-2023-2952)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2023:6469</guid>
    </item>
    <item>
      <title>cnvd-2023-62288</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2023-62288</link>
      <description>cnvd-2023-62288</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2023-62288</guid>
    </item>
    <item>
      <title>EUVD-2026-258406</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-258406</link>
      <description>EUVD-2026-258406</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-258406</guid>
    </item>
    <item>
      <title>fkie_cve-2023-2952</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-2952</link>
      <description>&lt;p&gt;XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-2952</guid>
    </item>
    <item>
      <title>GHSA-h2fj-p2f3-rmwc</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-h2fj-p2f3-rmwc</link>
      <description>&lt;p&gt;XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-h2fj-p2f3-rmwc</guid>
    </item>
    <item>
      <title>gsd-2023-2952</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-2952</link>
      <description>gsd-2023-2952</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-2952</guid>
    </item>
    <item>
      <title>OESA-2023-1373 — wireshark security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2023-1373</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS: wireshark&lt;/p&gt;
&lt;p&gt;Wireshark allows you to examine protocol data stored in files or as it is captured from wired or wireless (WiFi or Bluetooth) networks, USB devices, and many other sources.  It supports dozens of protocol capture file formats and understands more than a thousand protocols. It has many powerful features including a rich display filter language and the ability to reassemble multiple protocol packets in order to, for example, view a complete TCP stream, save the contents of a file which was transferred over HTTP or CIFS, or play back an RTP audio stream.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file(CVE-2023-2952)&lt;/p&gt;
&lt;p&gt;Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark version 4.0.5 and prior, in an unusual configuration, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark(CVE-2023-0667)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS: wireshark&lt;/p&gt;
&lt;p&gt;Wireshark allows you to examine protocol data stored in files or as it is captured from wired or wireless (WiFi or Bluetooth) networks, USB devices, and many other sources.  It supports dozens of protocol capture file formats and understands more than a thousand protocols. It has many powerful features including a rich display filter language and the ability to reassemble multiple protocol packets in order to, for example, view a complete TCP stream, save the contents of a file which was transferred over HTTP or CIFS, or play back an RTP audio stream.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file(CVE-2023-2952)&lt;/p&gt;
&lt;p&gt;Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark version 4.0.5 and prior, in an unusual configuration, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark(CVE-2023-0667)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2023-1373</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:12989-1 — libwireshark16-4.0.6-2.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12989-1</link>
      <description>&lt;p&gt;libwireshark16-4.0.6-2.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libwireshark16-4.0.6-2.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:12989-1</guid>
    </item>
    <item>
      <title>RLSA-2023:7015 — Moderate: wireshark security update</title>
      <link>https://cve.radiocsirt.org/vuln/rlsa-2023:7015</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:8: wireshark&lt;/p&gt;
&lt;p&gt;The wireshark packages contain a network protocol analyzer used to capture and browse the traffic running on a computer network.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* wireshark: RTPS dissector crash (CVE-2023-0666)&lt;/p&gt;
&lt;p&gt;* wireshark: VMS TCPIPtrace file parser crash (CVE-2023-2856)&lt;/p&gt;
&lt;p&gt;* wireshark: NetScaler file parser crash (CVE-2023-2858)&lt;/p&gt;
&lt;p&gt;* wireshark: XRA dissector infinite loop (CVE-2023-2952)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the Rocky Linux 8.9 Release Notes linked from the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:8: wireshark&lt;/p&gt;
&lt;p&gt;The wireshark packages contain a network protocol analyzer used to capture and browse the traffic running on a computer network.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* wireshark: RTPS dissector crash (CVE-2023-0666)&lt;/p&gt;
&lt;p&gt;* wireshark: VMS TCPIPtrace file parser crash (CVE-2023-2856)&lt;/p&gt;
&lt;p&gt;* wireshark: NetScaler file parser crash (CVE-2023-2858)&lt;/p&gt;
&lt;p&gt;* wireshark: XRA dissector infinite loop (CVE-2023-2952)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the Rocky Linux 8.9 Release Notes linked from the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rlsa-2023:7015</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-2952</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-2952</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: wireshark, Ubuntu:Pro:16.04:LTS: wireshark, Ubuntu:Pro:18.04:LTS: wireshark, Ubuntu:Pro:20.04:LTS: wireshark, Ubuntu:Pro:22.04:LTS: wireshark&lt;/p&gt;
&lt;p&gt;XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: wireshark, Ubuntu:Pro:16.04:LTS: wireshark, Ubuntu:Pro:18.04:LTS: wireshark, Ubuntu:Pro:20.04:LTS: wireshark, Ubuntu:Pro:22.04:LTS: wireshark&lt;/p&gt;
&lt;p&gt;XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-2952</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-1300 — Wireshark: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1300</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Wireshark ausnutzen, um einen Denial of Service Angriff durchzuführen und beliebigen Code auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Wireshark ausnutzen, um einen Denial of Service Angriff durchzuführen und beliebigen Code auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1300</guid>
    </item>
  </channel>
</rss>
