MGASA-2014-0386
Dashboard / Vulnerabilities / MGASA-2014-0386
MGASA-2014-0386
Summary: Updated wireshark packages fix security vulnerabilities
Details: Updated wireshark packages fix security vulnerabilities: RTP dissector crash (CVE-2014-6421, CVE-2014-6422). MEGACO dissector infinite loop (CVE-2014-6423). Netflow dissector crash (CVE-2014-6424). RTSP dissector crash (CVE-2014-6427). SES dissector crash (CVE-2014-6428). Sniffer file parser crash (CVE-2014-6429, CVE-2014-6430, CVE-2014-6431, CVE-2014-6432).
References: https://advisories.mageia.org/MGASA-2014-0386.html, https://bugs.mageia.org/show_bug.cgi?id=14113, https://www.wireshark.org/security/wnpa-sec-2014-12.html, https://www.wireshark.org/security/wnpa-sec-2014-13.html, https://www.wireshark.org/security/wnpa-sec-2014-14.html, https://www.wireshark.org/security/wnpa-sec-2014-17.html, https://www.wireshark.org/security/wnpa-sec-2014-18.html, https://www.wireshark.org/security/wnpa-sec-2014-19.html, https://www.wireshark.org/docs/relnotes/wireshark-1.10.10.html, https://www.wireshark.org/news/20140916.html
Affected packages
Package
Name: wireshark
Purl: pkg:rpm/mageia/wireshark?arch=source&distro=mageia-3
Affected ranges
Type: ECOSYSTEM
Events:
