Known vulnerabilities in wireshark (Red Hat package)
Vendor:
Red Hat Inc.
Software:
wireshark (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:wireshark_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
20
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
4.4.2-3.el10_0.4
4.4.2-4.el10_1.4
4.4.2-3.el10_0.2
4.4.2-4.el10_1.2
4.4.2-3.el10_0.1
3.4.10-7.el9_6.1
3.4.10-4.el9_2.1
3.4.10-1.el9_0.1
3.4.10-8.el9_7.1
4.4.2-4.el10_1.1
1.2.15-2.el6_2.1
1.2.15-1.el6_0.1
1.0.15-1.el4_8.3
1.0.15-1.el5_5.3
1.2.13-1.el6_0.2
1.2.13-1.el6_0.1
1.0.15-1.el4_8.1
1.0.15-1.el5_5.1
1.0.11-1.el4_8.5
1.0.11-1.el5_5.5
1.0.8-1.el4_8.1
1.0.8-1.el5_3.1
1.0.3-4.el5_2
2.6.2-17.el8
3.4.10-6.el9
3.4.10-4.el9
1.10.14-24.el7
0.99.5-1.el5
0.99.6-1.el5
0.99.7-1.el4
0.99.7-1.el5
1.0.3-3.el4_7
1.0.6-2.el4_7
1.0.6-2.el5_3
1.0.15-2.el4
1.0.15-5.el5
1.0.15-6.el5_10
1.10.3-12.el7_0
1.0.15-7.el5_11
1.10.14-7.el7
1.8.10-25.el6
1.8.10-17.el6
1.8.10-8.el6_6
1.8.10-7.el6_5
1.8.10-4.el6
1.2.15-2.el6_2
1.2.15-2.el6
1.2.15-1.el6_0
1.2.13-1.el6_0
1.2.10-2.el6
Vulnerabilities (20)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU128549 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2026-5656 |
CWE-22 | High | 4.4.2-3.el10_0.4 | 30.04.2026 |
SB2026043061 SB2026061621 SB2026061802 |
||
| #VU128532 - Heap-based Buffer Overflow CVE-2026-5405 |
CWE-122 | Medium | 4.4.2-3.el10_0.4 | 30.04.2026 |
SB2026043061 SB2026061621 SB2026061802 |
||
| #VU123278 - Out-of-bounds read CVE-2026-3203 |
CWE-125 | Medium | 4.4.2-3.el10_0.4, 4.4.2-4.el10_1.4 | 26.02.2026 |
SB2026022605 SB2026030544 SB2026031052 and 9 more |
||
| #VU123276 - Uncontrolled Memory Allocation CVE-2026-3201 |
CWE-789 | Medium | 4.4.2-3.el10_0.4, 4.4.2-4.el10_1.4 | 26.02.2026 |
SB2026022605 SB2026030530 SB2026030544 and 10 more |
||
| #VU118636 - Improper input validation CVE-2025-13499 |
CWE-20 | Medium | 3.4.10-1.el9_0.1, 3.4.10-4.el9_2.1, 3.4.10-7.el9_6.1, 3.4.10-8.el9_7.1, 4.4.2-3.el10_0.1, 4.4.2-4.el10_1.1 | 20.11.2025 |
SB2025112010 SB2025112835 SB2025112836 and 16 more |
||
| #VU114556 - Improper input validation CVE-2025-9817 |
CWE-20 | Medium | 4.4.2-3.el10_0.2, 4.4.2-4.el10_1.2 | 29.08.2025 |
SB2025082908 SB2025091567 SB2025091568 and 10 more |
||
| #VU76498 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2023-2952 |
CWE-835 | Medium | 2.6.2-17.el8, 3.4.10-6.el9 | 25.05.2023 |
SB2023052506 SB2023061632 SB2023080951 and 13 more |
||
| #VU76497 - Improper input validation CVE-2023-0668 |
CWE-20 | Medium | 3.4.10-6.el9 | 25.05.2023 |
SB2023052506 SB2023053058 SB2023061632 and 10 more |
||
| #VU76496 - Improper input validation CVE-2023-0666 |
CWE-20 | Medium | 2.6.2-17.el8, 3.4.10-6.el9 | 25.05.2023 |
SB2023052506 SB2023061632 SB2023082320 and 18 more |
||
| #VU76494 - Improper input validation CVE-2023-2856 |
CWE-20 | Medium | 2.6.2-17.el8, 3.4.10-6.el9 | 25.05.2023 |
SB2023052506 SB2023053058 SB2023061632 and 16 more |
||
| #VU76493 - Improper input validation CVE-2023-2858 |
CWE-20 | Medium | 2.6.2-17.el8, 3.4.10-6.el9 | 25.05.2023 |
SB2023052506 SB2023053058 SB2023061632 and 15 more |
||
| #VU76490 - Improper input validation CVE-2023-2855 |
CWE-20 | Medium | 3.4.10-6.el9 | 25.05.2023 |
SB2023052506 SB2023053058 SB2023061632 and 10 more |
||
| #VU67070 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2022-3190 |
CWE-835 | Medium | 3.4.10-4.el9 | 07.09.2022 |
SB2022090748 SB2022092050 SB2023050943 and 4 more |
||
| #VU16193 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2018-19622 |
CWE-835 | Low | 1.10.14-24.el7 | 30.11.2018 |
SB2018113008 SB2018121018 SB2018122802 and 6 more |
||
| #VU14578 - Memory corruption CVE-2018-16057 |
CWE-119 | Low | 1.10.14-24.el7 | 30.08.2018 |
SB2018083104 SB2018090301 SB2018090601 and 6 more |
||
| #VU14112 - Resource exhaustion CVE-2018-14368 |
CWE-835 | Medium | 1.10.14-24.el7 | 30.07.2018 |
SB2018073013 SB2018080403 SB2018080404 and 5 more |
||
| #VU14111 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2018-14341 |
CWE-400 | Medium | 1.10.14-24.el7 | 30.07.2018 |
SB2018073013 SB2018080403 SB2018080404 and 5 more |
||
| #VU14108 - Improper input validation CVE-2018-14340 |
CWE-20 | Medium | 1.10.14-24.el7 | 30.07.2018 |
SB2018073013 SB2018080403 SB2018080404 and 5 more |
||
| #VU13034 - Buffer over-read CVE-2018-11362 |
CWE-126 | Medium | 1.10.14-24.el7 | 29.05.2018 |
SB2018052901 SB2018052503 SB2018052504 and 9 more |
||
| #VU10765 - Memory corruption CVE-2018-7418 |
CWE-119 | Low | 1.10.14-24.el7 | 27.02.2018 |
SB2018022704 SB2020040127 SB2018031939 and 6 more |