add CVEs:

* wnpa-sec-2012-08 / CVE-2012-2392
    * wnpa-sec-2012-09 / CVE-2012-2393
    * wnpa-sec-2012-10 / CVE-2012-2394

OBS-URL: https://build.opensuse.org/package/show/network:utilities/wireshark?expand=0&rev=57
This commit is contained in:
Andreas Stieger 2012-05-23 19:01:36 +00:00 committed by Git OBS Bridge
parent 5a3101020c
commit 7ad87b11be

View File

@ -4,15 +4,15 @@ Tue May 22 19:02:42 UTC 2012 - andreas.stieger@gmx.de
- adjust wireshark-corosync-packet-dissector.patch for source changes
- update to upstream 1.6.8
+ security fixes
* wnpa-sec-2012-08
* wnpa-sec-2012-08 / CVE-2012-2392
Infinite and large loops in the ANSI MAP, ASF, BACapp,
Bluetooth HCI, IEEE 802.11, IEEE 802.3, LTP, and R3 dissectors
have been fixed. Discovered by Laurent Butti. (Bugs 6805,
7118, 7119, 7120, 7121, 7122, 7124, 7125)
* wnpa-sec-2012-09
* wnpa-sec-2012-09 / CVE-2012-2393
The DIAMETER dissector could try to allocate memory improperly
and crash. (Bug 7138)
* wnpa-sec-2012-10
* wnpa-sec-2012-10 / CVE-2012-2394
Wireshark could crash on SPARC processors due to misaligned
memory. Discovered by Klaus Heckelmann. (Bug 7221)
+ bug fixes