Wireshark 2.4.x < 2.4.6 Multiple Vulnerabilities (macOS)

high Nessus Plugin ID 311476

Synopsis

An application installed on the remote macOS / Mac OS X host is affected by multiple vulnerabilities.

Description

The version of Wireshark installed on the remote macOS / Mac OS X host is prior to 2.4.6. It is, therefore, affected by multiple vulnerabilities as referenced in the wireshark-2.4.6 advisory.

- The MP4 dissector could crash. It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. (wireshark-bug-13777)

- The ADB dissector could crash. It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. (wireshark-bug-14460)

- The IEEE 802.15.4 dissector could crash. It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. (wireshark- bug-14468)

- The NBAP dissector could crash. It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. (wireshark-bug-14471)

- The VLAN dissector could crash. It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. (wireshark-bug-14469)

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Upgrade to Wireshark version 2.4.6 or later.

See Also

https://www.wireshark.org/security/wnpa-sec-2018-15

https://www.wireshark.org/security/wnpa-sec-2018-16

https://www.wireshark.org/security/wnpa-sec-2018-17

https://www.wireshark.org/security/wnpa-sec-2018-18

https://www.wireshark.org/security/wnpa-sec-2018-19

https://www.wireshark.org/security/wnpa-sec-2018-20

https://www.wireshark.org/security/wnpa-sec-2018-23

https://www.wireshark.org/security/wnpa-sec-2018-21

https://www.wireshark.org/security/wnpa-sec-2018-22

https://www.wireshark.org/security/wnpa-sec-2018-24

https://gitlab.com/wireshark/wireshark/-/issues/13777

https://gitlab.com/wireshark/wireshark/-/issues/14460

https://gitlab.com/wireshark/wireshark/-/issues/14468

https://gitlab.com/wireshark/wireshark/-/issues/14471

https://gitlab.com/wireshark/wireshark/-/issues/14469

https://gitlab.com/wireshark/wireshark/-/issues/14467

https://gitlab.com/wireshark/wireshark/-/issues/14576

https://www.wireshark.org/docs/relnotes/wireshark-2.4.6.html

https://gitlab.com/wireshark/wireshark/-/issues/14472

https://gitlab.com/wireshark/wireshark/-/issues/14530

https://gitlab.com/wireshark/wireshark/-/issues/14480

https://gitlab.com/wireshark/wireshark/-/issues/14481

https://gitlab.com/wireshark/wireshark/-/issues/14482

https://gitlab.com/wireshark/wireshark/-/issues/14483

https://gitlab.com/wireshark/wireshark/-/issues/14484

https://gitlab.com/wireshark/wireshark/-/issues/14485

https://gitlab.com/wireshark/wireshark/-/issues/14486

https://gitlab.com/wireshark/wireshark/-/issues/14487

https://gitlab.com/wireshark/wireshark/-/issues/14488

https://gitlab.com/wireshark/wireshark/-/issues/14489

Plugin Details

Severity: High

ID: 311476

File Name: macosx_wireshark_2_4_6.nasl

Version: 1.1

Type: Local

Agent: macosx

Published: 5/2/2026

Updated: 5/2/2026

Supported Sensors: Frictionless Assessment Agent, Nessus Agent, Nessus

Vulnerability Information

CPE: cpe:/a:wireshark:wireshark

Required KB Items: Host/local_checks_enabled, Host/MacOSX/Version, installed_sw/Wireshark

Exploit Ease: No known exploits are available

Patch Publication Date: 4/3/2018

Vulnerability Publication Date: 4/3/2018