CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

Search Vulnerabilities

 Software

Searching vulnerabilities affecting “wireshark”

216 vulnerabilities found for “wireshark”

Page 1 of 11

CVE-2021-39920
HIGH7.5

NULL pointer exception in the IPPUSB dissector in Wireshark 3.4.0 to 3.4.9 allows denial of service via packet injection or crafted capture file

wireshark / wireshark+2
Network
Published Nov 18, 2021
Page 1 of 11
CVE-2021-22235
HIGH7.5

Crash in DNP dissector in Wireshark 3.4.0 to 3.4.6 and 3.2.0 to 3.2.14 allows denial of service via packet injection or crafted capture file

wireshark / wireshark+4
Network
Published Jul 20, 2021
CVE-2021-22222
HIGH7.5

Infinite loop in DVB-S2-BB dissector in Wireshark 3.4.0 to 3.4.5 allows denial of service via packet injection or crafted capture file

wireshark / wireshark+7
Network
Published Jun 7, 2021
CVE-2021-22207
MEDIUM5.5

Excessive memory consumption in MS-WSP dissector in Wireshark 3.4.0 to 3.4.4 and 3.2.0 to 3.2.12 allows denial of service via packet injection or crafted capture file

wireshark / wireshark+7
Local
Published Apr 23, 2021
CVE-2021-22191
MEDIUM6.3

Improper URL handling in Wireshark 3.4.0 to 3.4.3 and 3.2.0 to 3.2.11 could allow remote code execution via via packet injection or crafted capture file.

wireshark / wireshark+3
Network
Published Mar 15, 2021
CVE-2021-22173
LOW3.7

Memory leak in USB HID dissector in Wireshark 3.4.0 to 3.4.2 allows denial of service via packet injection or crafted capture file

wireshark / wireshark+3
Network
Published Feb 17, 2021
CVE-2021-22174
LOW3.7

Crash in USB HID dissector in Wireshark 3.4.0 to 3.4.2 allows denial of service via packet injection or crafted capture file

wireshark / wireshark+3
Network
Published Feb 17, 2021
CVE-2020-26422
LOW3.7

Buffer overflow in QUIC dissector in Wireshark 3.4.0 to 3.4.1 allows denial of service via packet injection or crafted capture file

wireshark / wireshark+2
Network
Published Dec 21, 2020
CVE-2020-26420
LOW3.1

Memory leak in RTPS protocol dissector in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.

wireshark / wireshark+4
Network
Published Dec 11, 2020
CVE-2020-26419
LOW3.1

Memory leak in the dissection engine in Wireshark 3.4.0 allows denial of service via packet injection or crafted capture file.

wireshark / wireshark+3
Network
Published Dec 11, 2020
CVE-2020-26418
LOW3.1

Memory leak in Kafka protocol dissector in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.

wireshark / wireshark+5
Network
Published Dec 11, 2020
CVE-2020-26421
MEDIUM4.2

Crash in USB HID protocol dissector and possibly other dissectors in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.

wireshark / wireshark+5
Network
Published Dec 11, 2020
CVE-2020-28030
HIGH7.5

In Wireshark 3.2.0 to 3.2.7, the GQUIC dissector could crash. This was addressed in epan/dissectors/packet-gquic.c by correcting the implementation of offset advancement.

wireshark / wireshark+3
Network
Published Nov 2, 2020
CVE-2020-25866
HIGH7.5

In Wireshark 3.2.0 to 3.2.6 and 3.0.0 to 3.0.13, the BLIP protocol dissector has a NULL pointer dereference because a buffer was sized for compressed (not uncompressed) messages. This was addressed in epan/dissectors/packet-blip.c by allowing reasonable compression ratios and rejecting ZIP bombs.

wireshark / wireshark+7
Network
Published Oct 6, 2020
CVE-2020-26575
HIGH7.5

In Wireshark through 3.2.7, the Facebook Zero Protocol (aka FBZERO) dissector could enter an infinite loop. This was addressed in epan/dissectors/packet-fbzero.c by correcting the implementation of offset advancement.

wireshark / wireshark+4
Network
Published Oct 6, 2020
CVE-2020-25862
HIGH7.5

In Wireshark 3.2.0 to 3.2.6, 3.0.0 to 3.0.13, and 2.6.0 to 2.6.20, the TCP dissector could crash. This was addressed in epan/dissectors/packet-tcp.c by changing the handling of the invalid 0xFFFF checksum.

wireshark / wireshark+9
Network
Published Oct 6, 2020
CVE-2020-25863
HIGH7.5

In Wireshark 3.2.0 to 3.2.6, 3.0.0 to 3.0.13, and 2.6.0 to 2.6.20, the MIME Multipart dissector could crash. This was addressed in epan/dissectors/packet-multipart.c by correcting the deallocation of invalid MIME parts.

wireshark / wireshark+9
Network
Published Oct 6, 2020
CVE-2020-17498
MEDIUM6.5

In Wireshark 3.2.0 to 3.2.5, the Kafka protocol dissector could crash. This was addressed in epan/dissectors/packet-kafka.c by avoiding a double free during LZ4 decompression.

wireshark / wireshark+5
Network
Published Aug 13, 2020
CVE-2020-15466
HIGH7.5

In Wireshark 3.2.0 to 3.2.4, the GVCP dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-gvcp.c by ensuring that an offset increases in all situations.

wireshark / wireshark+3
Network
Published Jul 5, 2020
CVE-2020-13164
HIGH7.5

In Wireshark 3.2.0 to 3.2.3, 3.0.0 to 3.0.10, and 2.6.0 to 2.6.16, the NFS dissector could crash. This was addressed in epan/dissectors/packet-nfs.c by preventing excessive recursion, such as for a cycle in the directory graph on a filesystem.

wireshark / wireshark+7
Network
Published May 19, 2020