MGASA-2014-0326
Dashboard / Vulnerabilities / MGASA-2014-0326
MGASA-2014-0326
Summary: Updated wireshark package fix security vulnerabilities
Details: The Catapult DCT2000 and IrDA dissectors could underrun a buffer (CVE-2014-5161, CVE-2014-5162). The GSM Management dissector could crash (CVE-2014-5163). The RLC dissector could crash (CVE-2014-5164). The ASN.1 BER dissector could crash (CVE-2014-5165). The wireshark package has been updated to version 1.10.9 to fix these issues and other bugs.
References: https://advisories.mageia.org/MGASA-2014-0326.html, https://bugs.mageia.org/show_bug.cgi?id=13839, https://www.wireshark.org/security/wnpa-sec-2014-08.html, https://www.wireshark.org/security/wnpa-sec-2014-09.html, https://www.wireshark.org/security/wnpa-sec-2014-10.html, https://www.wireshark.org/security/wnpa-sec-2014-11.html, http://www.wireshark.org/docs/relnotes/wireshark-1.10.9.html, http://www.wireshark.org/news/20140731.html
Affected packages
Package
Name: wireshark
Purl: pkg:rpm/mageia/wireshark?arch=source&distro=mageia-3
Affected ranges
Type: ECOSYSTEM
Events:
