MGASA-2013-0236
Dashboard / Vulnerabilities / MGASA-2013-0236
MGASA-2013-0236
Summary: Updated wireshark package fixes security vulnerabilities
Details: The Bluetooth SDP dissector could go into a large loop (CVE-2013-4927). The DIS dissector could go into a large loop (CVE-2013-4929). The DVB-CI dissector could crash (CVE-2013-4930). The GSM RR dissector (and possibly others) could go into a large loop (CVE-2013-4931). The GSM A Common dissector could crash (CVE-2013-4932). The Netmon file parser could crash (CVE-2013-4933, CVE-2013-4934). The ASN.1 PER dissector could crash (CVE-2013-4935).
References: https://advisories.mageia.org/MGASA-2013-0236.html, https://bugs.mageia.org/show_bug.cgi?id=10858, http://www.wireshark.org/security/wnpa-sec-2013-45.html, http://www.wireshark.org/security/wnpa-sec-2013-47.html, http://www.wireshark.org/security/wnpa-sec-2013-48.html, http://www.wireshark.org/security/wnpa-sec-2013-49.html, http://www.wireshark.org/security/wnpa-sec-2013-50.html, http://www.wireshark.org/security/wnpa-sec-2013-51.html, http://www.wireshark.org/security/wnpa-sec-2013-52.html, http://www.wireshark.org/docs/relnotes/wireshark-1.8.9.html, http://www.wireshark.org/news/20130726.html
Affected packages
Package
Name: wireshark
Purl: pkg:rpm/mageia/wireshark?arch=source&distro=mageia-2
Affected ranges
Type: ECOSYSTEM
Events:
