Wireshark(前称Ethereal)是Wireshark团队的一套网络数据包分析软件。该软件的功能是截取网络数据包,并显示出详细的数据以供分析。Gryphon dissector是其中的一个Gryphon协议解析器。 Wireshark 中存在输入验证错误漏洞,该漏洞源于产品未对Kafka报文进行有效处理。攻击者可通过该漏洞导致拒绝服务。以下产品及版本受到影响:Wireshark 3.6.0。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Wireshark Foundation | Wireshark | =3.6.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-4181 | 7.5 HIGH | Wireshark 缓冲区错误漏洞 |
| CVE-2021-4182 | 7.5 HIGH | Wireshark 注入漏洞 |
| CVE-2021-4184 | 7.5 HIGH | Wireshark 安全漏洞 |
| CVE-2021-4185 | 7.5 HIGH | Wireshark 安全漏洞 |
| CVE-2021-4186 | 6.3 MEDIUM | Wireshark 代码问题漏洞 |
| CVE-2021-4183 | 5.5 MEDIUM | Wireshark 缓冲区错误漏洞 |
No comments yet