SCIENTIFIC-LINUX-ERRATA Archives

April 2012

SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Patrick Riehecky <[log in to unmask]>
Reply To:
Date:
Mon, 23 Apr 2012 14:01:49 -0500
Content-Type:
text/plain
Parts/Attachments:
text/plain (54 lines)
Synopsis:    Moderate: wireshark security update
Issue Date:  2012-04-23
CVE Numbers: CVE-2011-1143
             CVE-2011-1590
             CVE-2011-1957
             CVE-2011-1959
             CVE-2011-2174
             CVE-2011-2175
             CVE-2011-1958
             CVE-2011-2597
             CVE-2011-2698
             CVE-2011-4102
             CVE-2012-0041
             CVE-2012-0042
             CVE-2012-0066
             CVE-2012-0067
             CVE-2012-1595


Wireshark is a program for monitoring network traffic. Wireshark was
previously known as Ethereal.

Several flaws were found in Wireshark. If Wireshark read a malformed packet
off a network or opened a malicious dump file, it could crash or, possibly,
execute arbitrary code as the user running Wireshark. (CVE-2011-1590,
CVE-2011-4102, CVE-2012-1595)

Several denial of service flaws were found in Wireshark. Wireshark could
crash or stop responding if it read a malformed packet off a network, or
opened a malicious dump file. (CVE-2011-1143, CVE-2011-1957, CVE-2011-1958,
CVE-2011-1959, CVE-2011-2174, CVE-2011-2175, CVE-2011-2597, CVE-2011-2698,
CVE-2012-0041, CVE-2012-0042, CVE-2012-0067, CVE-2012-0066)

Users of Wireshark should upgrade to these updated packages, which contain
backported patches to correct these issues. All running instances of
Wireshark must be restarted for the update to take effect.

SL6:
  i386
     wireshark-1.2.15-2.el6_2.1.i686.rpm
     wireshark-debuginfo-1.2.15-2.el6_2.1.i686.rpm
     wireshark-devel-1.2.15-2.el6_2.1.i686.rpm
     wireshark-gnome-1.2.15-2.el6_2.1.i686.rpm
  x86_64
     wireshark-1.2.15-2.el6_2.1.i686.rpm
     wireshark-1.2.15-2.el6_2.1.x86_64.rpm
     wireshark-debuginfo-1.2.15-2.el6_2.1.i686.rpm
     wireshark-debuginfo-1.2.15-2.el6_2.1.x86_64.rpm
     wireshark-devel-1.2.15-2.el6_2.1.i686.rpm
     wireshark-devel-1.2.15-2.el6_2.1.x86_64.rpm
     wireshark-gnome-1.2.15-2.el6_2.1.x86_64.rpm

- Scientific Linux Development Team

ATOM RSS1 RSS2