Wireshark(前称Ethereal)是Wireshark团队的一套网络数据包分析软件。该软件的功能是截取网络数据包,并显示出详细的数据以供分析。Gryphon dissector是其中的一个Gryphon协议解析器。 Wireshark 3.6.0 和 3.4.0 - 3.4.10版本存在安全漏洞,该漏洞源于RFC 7468解析器发生故障。攻击者可利用该漏洞通过数据包注入或特制的捕获文件造成拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Wireshark Foundation | Wireshark | =3.6.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-4181 | 7.5 HIGH | Wireshark 缓冲区错误漏洞 |
| CVE-2021-4184 | 7.5 HIGH | Wireshark 安全漏洞 |
| CVE-2021-4185 | 7.5 HIGH | Wireshark 安全漏洞 |
| CVE-2021-4190 | 7.5 HIGH | Wireshark 输入验证错误漏洞 |
| CVE-2021-4186 | 6.3 MEDIUM | Wireshark 代码问题漏洞 |
| CVE-2021-4183 | 5.5 MEDIUM | Wireshark 缓冲区错误漏洞 |
No comments yet