From 364956aa8105b21084043b83222f201c854af2b96eecafd266f8aded8ff72d28 Mon Sep 17 00:00:00 2001 From: Robert Frohl Date: Tue, 22 Dec 2020 17:41:05 +0000 Subject: [PATCH] Accepting request 856940 from home:AndreasStieger:branches:network:utilities Wireshark 3.4.2 CVE-2020-26422 boo#1180232 OBS-URL: https://build.opensuse.org/request/show/856940 OBS-URL: https://build.opensuse.org/package/show/network:utilities/wireshark?expand=0&rev=326 --- wireshark-3.4.1.tar.xz | 3 -- wireshark-3.4.1.tar.xz.asc | 60 -------------------------------------- wireshark-3.4.2.tar.xz | 3 ++ wireshark-3.4.2.tar.xz.asc | 60 ++++++++++++++++++++++++++++++++++++++ wireshark.changes | 12 ++++++++ wireshark.spec | 2 +- 6 files changed, 76 insertions(+), 64 deletions(-) delete mode 100644 wireshark-3.4.1.tar.xz delete mode 100644 wireshark-3.4.1.tar.xz.asc create mode 100644 wireshark-3.4.2.tar.xz create mode 100644 wireshark-3.4.2.tar.xz.asc diff --git a/wireshark-3.4.1.tar.xz b/wireshark-3.4.1.tar.xz deleted file mode 100644 index df41789..0000000 --- a/wireshark-3.4.1.tar.xz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:f8165211f5b4a4f6708df73ef9be51df917927f2da78348b32d3a6eb5fc458a3 -size 32470004 diff --git a/wireshark-3.4.1.tar.xz.asc b/wireshark-3.4.1.tar.xz.asc deleted file mode 100644 index 6cd2175..0000000 --- a/wireshark-3.4.1.tar.xz.asc +++ /dev/null @@ -1,60 +0,0 @@ ------BEGIN PGP SIGNED MESSAGE----- -Hash: SHA512 - -wireshark-3.4.1.tar.xz: 32470004 bytes -SHA256(wireshark-3.4.1.tar.xz)=f8165211f5b4a4f6708df73ef9be51df917927f2da78348b32d3a6eb5fc458a3 -RIPEMD160(wireshark-3.4.1.tar.xz)=1b5e1fee340c149b70dbe8e8cf935518b06656e8 -SHA1(wireshark-3.4.1.tar.xz)=3c9a24b8954d712a189f997131e283fbd0b606bc - -Wireshark-win32-3.4.1.exe: 56544496 bytes -SHA256(Wireshark-win32-3.4.1.exe)=7fb41f10b7b55fe7208504a1b3ba54346995592f223d85073fafb721b7ae43e8 -RIPEMD160(Wireshark-win32-3.4.1.exe)=5d333fb127c12c4bf9ca1a497e3b44bd8398e8a2 -SHA1(Wireshark-win32-3.4.1.exe)=82a043157828565e10534791874341914563784a - -Wireshark-win64-3.4.1.exe: 61466856 bytes -SHA256(Wireshark-win64-3.4.1.exe)=a078a0d97ed271a97fad294654b581b16db9926e80fd66c916b079d8fece1d45 -RIPEMD160(Wireshark-win64-3.4.1.exe)=34eba5e05371fdbab9a43a5490fc0641923f8483 -SHA1(Wireshark-win64-3.4.1.exe)=8d44d796c5b40a2fbbc93a553d932724669b681c - -Wireshark-win32-3.4.1.msi: 44761088 bytes -SHA256(Wireshark-win32-3.4.1.msi)=384d36b8d0a96e785ef79ba83ed35c9628571471a22faad3f88d3f16c5dd5ead -RIPEMD160(Wireshark-win32-3.4.1.msi)=c200f5a7f7d358198e753e79dc884c8baef0a9aa -SHA1(Wireshark-win32-3.4.1.msi)=2df5374db72f65b7a13f34252e995bbc98de9836 - -Wireshark-win64-3.4.1.msi: 49778688 bytes -SHA256(Wireshark-win64-3.4.1.msi)=fec6cc2f9df755e7b3d5aa04e6483cdaf3acb06a6aaa7ec84568f13d374a2df2 -RIPEMD160(Wireshark-win64-3.4.1.msi)=8e8b9d09c3fd0b58cc4a9c34cd24fd251b8efe3f -SHA1(Wireshark-win64-3.4.1.msi)=0c05bd26fbf877b450c90997cfc3fe2cf1592c55 - -WiresharkPortable_3.4.1.paf.exe: 114716632 bytes -SHA256(WiresharkPortable_3.4.1.paf.exe)=3b1ef47fd88aa17e586be57f096213c3ee1a0ae5eace46eba4abfb8a8450219b -RIPEMD160(WiresharkPortable_3.4.1.paf.exe)=56f45264fb188ba799659f501a4006b5062b3540 -SHA1(WiresharkPortable_3.4.1.paf.exe)=f726b13570150bc2d4441ca8ff3cff97aa773325 - -Wireshark 3.4.1 Intel 64.dmg: 127368038 bytes -SHA256(Wireshark 3.4.1 Intel 64.dmg)=a5bb21db6410c3151f48afc39e0d0e4a270bb87b8102e8b9348df3e3455bb241 -RIPEMD160(Wireshark 3.4.1 Intel 64.dmg)=93e87bd6ab58d4ddc727e5d52f6f94ddc29e354f -SHA1(Wireshark 3.4.1 Intel 64.dmg)=33f6b2b6d11d9efaea14916645803327ada1de41 - -You can validate these hashes using the following commands (among others): - - Windows: certutil -hashfile Wireshark-win64-x.y.z.exe SHA256 - Linux (GNU Coreutils): sha256sum wireshark-x.y.z.tar.xz - macOS: shasum -a 256 "Wireshark x.y.z Intel 64.dmg" - Other: openssl sha256 wireshark-x.y.z.tar.xz ------BEGIN PGP SIGNATURE----- - -iQIzBAEBCgAdFiEEWlrbp9vqbD+HIk8ZgiRKeOb+ruoFAl/RfjwACgkQgiRKeOb+ -ruoTDhAA0HpsQJCbCM4dhzQNE9BnGLde6uAXCgwvKzi1Qo+0i5WgUi6ilQADyEKB -eHdpBw3s5YT42pH6o5H/VYAbVMuL8rOoWiPeyZxUpXRHl5jmrE3jxDbLFZ3UTkZh -zn71y51G601IGWdCoDXOaGYVKSbgZC4BvESngcXC+TGovvim5lGWENK4buU8UgZT -7IxI01xynUCRYxpP9dgrei9AR0GjGZz2VPI+d2dm7ggvOHSIhOlpVaJLlMfd09jl -E+E+sIkDdlLLNd7xHNBKVv6cuxNc65ebeHaSjHlFsqX3WOAQQ/iKKvYEqTv7/fTH -UKG3jq8CPJhgQNM0L40dyF5Ld4iF8HiVHmIh01Yx8IzPMqPtnNEhqYT6GxekZxZT -xEepfYaxGUznwQa2wCOZX5fy9yVyv5mASW8vyDy5di1EbQKd4qu0mPNBn9nj3RRW -9VNGvGQorAOneNKfK54PcRyQZMqAkCysey7jtNI6QpDCgonVYa3N6h4cx2NE5wky -5ZKX7lIrBKlROy31e0OsYoFPp3NPXqUry1do86JXUw3PHyvxpna7qijFdBOhVpz/ -JVMQPptdJUF0MWU7Sa0fpdICpufvB1kggSDkEmmpK134WulKxy3VdYBwFd4Tl1rG -9grkyx0qZEAeGOM3erN2hO7tdXkacpPVnNw/l6VtUFKj66HIXOI= -=TDyj ------END PGP SIGNATURE----- diff --git a/wireshark-3.4.2.tar.xz b/wireshark-3.4.2.tar.xz new file mode 100644 index 0000000..32e4ac6 --- /dev/null +++ b/wireshark-3.4.2.tar.xz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:de9868729e426a469baabd8d444240d84fa5445020e92c842dd19afd0d47a4c4 +size 32465900 diff --git a/wireshark-3.4.2.tar.xz.asc b/wireshark-3.4.2.tar.xz.asc new file mode 100644 index 0000000..33a2cab --- /dev/null +++ b/wireshark-3.4.2.tar.xz.asc @@ -0,0 +1,60 @@ +-----BEGIN PGP SIGNED MESSAGE----- +Hash: SHA512 + +wireshark-3.4.2.tar.xz: 32465900 bytes +SHA256(wireshark-3.4.2.tar.xz)=de9868729e426a469baabd8d444240d84fa5445020e92c842dd19afd0d47a4c4 +RIPEMD160(wireshark-3.4.2.tar.xz)=53a02106b0f23e50b1108d93772464974b2b37be +SHA1(wireshark-3.4.2.tar.xz)=b33276e4e6c3d6a057da3b569b58316330a5f3e3 + +Wireshark-win32-3.4.2.exe: 56527344 bytes +SHA256(Wireshark-win32-3.4.2.exe)=c2d6db4ece2cfd724c88602c7fc2fa336279b4bce7644d6e3174e29042871db8 +RIPEMD160(Wireshark-win32-3.4.2.exe)=474760431d6d426d7c12f6e8e8f02d208a14d41e +SHA1(Wireshark-win32-3.4.2.exe)=4900bde2fd1ae2b9af52c971dbeb4bfb0e6523c0 + +Wireshark-win64-3.4.2.exe: 61483296 bytes +SHA256(Wireshark-win64-3.4.2.exe)=faa98f833e10b450c24e42a42292ff894c36b97aec526bf259796488888fd57c +RIPEMD160(Wireshark-win64-3.4.2.exe)=6c3752f93eb157b52f9aa1943dbc73b0099c804d +SHA1(Wireshark-win64-3.4.2.exe)=bf855c8fdeec43d1bea32a195a6b142c6697cca3 + +Wireshark-win64-3.4.2.msi: 49790976 bytes +SHA256(Wireshark-win64-3.4.2.msi)=c84d78b7803d09a6e9bc7a88e3c99c08f52fb6d825855c92edad8762dec7f38d +RIPEMD160(Wireshark-win64-3.4.2.msi)=f81204059cc5990014dd842c9f753b584a0e53b7 +SHA1(Wireshark-win64-3.4.2.msi)=b9786daac33922af095a333c53508864a8cb0a57 + +Wireshark-win32-3.4.2.msi: 44736512 bytes +SHA256(Wireshark-win32-3.4.2.msi)=1aad705038039287768607e87e586bad23dad739a995de58bf3e3c192ad5a9ec +RIPEMD160(Wireshark-win32-3.4.2.msi)=5035b35162027a3970a38e4c983f9599648e68a1 +SHA1(Wireshark-win32-3.4.2.msi)=9198f71c384edf8c6366969941e5406da8e32149 + +WiresharkPortable_3.4.2.paf.exe: 115181192 bytes +SHA256(WiresharkPortable_3.4.2.paf.exe)=9d9f5aba58daa4796d805bd5521f550258e57784ed9c96a6bbc39d56b0003260 +RIPEMD160(WiresharkPortable_3.4.2.paf.exe)=916c0fb9692effada56074494ea9b2bb6715406b +SHA1(WiresharkPortable_3.4.2.paf.exe)=76546ae72ed6110cc32944670ae4ffd1cf1e6829 + +Wireshark 3.4.2 Intel 64.dmg: 130932181 bytes +SHA256(Wireshark 3.4.2 Intel 64.dmg)=2a1b79412c656e8c8efaf54d6adbc71bc8d8e7f6847fa614ada1f11395a6bad1 +RIPEMD160(Wireshark 3.4.2 Intel 64.dmg)=d7b8a4907db2831624981de09d83a98a5dd44e3c +SHA1(Wireshark 3.4.2 Intel 64.dmg)=bffdade26a0504917184eb346e39b13990046427 + +You can validate these hashes using the following commands (among others): + + Windows: certutil -hashfile Wireshark-win64-x.y.z.exe SHA256 + Linux (GNU Coreutils): sha256sum wireshark-x.y.z.tar.xz + macOS: shasum -a 256 "Wireshark x.y.z Intel 64.dmg" + Other: openssl sha256 wireshark-x.y.z.tar.xz +-----BEGIN PGP SIGNATURE----- + +iQIzBAEBCgAdFiEEWlrbp9vqbD+HIk8ZgiRKeOb+ruoFAl/dGRQACgkQgiRKeOb+ +ruq1hxAA6QztxZYU+1Y6PCklyRz5i3k8UIZiobxZqLSdf2z81pPVIG76q7ux2rOf +/cweRfevwlybHTuxFjo8OhQZyPEN4yWPC7cDCaTnvDSIdpSphQ+12H36v3R6caWZ +Kda4fPetrefnR1VZ2coYcu4MrFOGtn6TsA59LwCQvT9Ae4lK8zq6GYdqTdk0t+8K +RQw5iRM6d0m/Idxl9V0YQAPeRhKPfKFs1LeaXLVmkIieUz/4U1Gl9NjF5NLX2vNf +KdC699hCCEvrnLve/7i4y3XLrhF9+MUr7LnMQZpKkLPdcAcXSFJq44cs/W3oDGRc +wrkMNmkh8dElBKmTp1X4z5Q0Gzy+KiRV57hiIsyr2ErpSGNSHlpy42VNzU1ab5Xm +8H4u6rEN7vy9PS/yfAICJWIW8akD1HzmVqmVBJDydZkZbjoam3Rvuhv8D3pHbQ5a +6b4elJF757bgEXtPqlLNLZSdSl4ELvHy8AVruMFF3XssYp7085M0Ll/LLF+rf4K8 +vRi6lbhPhUJU6DVueSmU2EgC+eatKWLd1ajgcIvapiRZq/9CJb8zBlS0xRvMMZwI ++QvSGwZ52KB7Ii9yP7mrtFb1CFBH9tsqJ6azF0Jbv8rJskoOEllKjCLZLGoiAeA9 +JvIkSUoG2b/fxMX01yueG2olDpXHN4YlcUS46OAL07AQgEAK6u8= +=Hg8+ +-----END PGP SIGNATURE----- diff --git a/wireshark.changes b/wireshark.changes index 194ea6c..9b0862d 100644 --- a/wireshark.changes +++ b/wireshark.changes @@ -1,3 +1,15 @@ +------------------------------------------------------------------- +Sat Dec 19 04:24:30 UTC 2020 - Andreas Stieger + +- Wireshark 3.4.2 + * CVE-2020-26422: QUIC dissector crash (boo#1180232) + * Fix IETF QUIC TLS decryption errors when packets are coalesced + with random data + * QUIC: missing dissection of some coalesced SH packets + * Fix false expect error seen on FCoE frames + * Updated Protocol Support + DOCSIS, FC-dNS, FC-SWILS, FCoE, QUIC, SNMP, and USBHID + ------------------------------------------------------------------- Fri Dec 11 14:44:07 UTC 2020 - Andreas Stieger diff --git a/wireshark.spec b/wireshark.spec index 0893f7f..c882f45 100644 --- a/wireshark.spec +++ b/wireshark.spec @@ -27,7 +27,7 @@ %bcond_with lz4 %endif Name: wireshark -Version: 3.4.1 +Version: 3.4.2 Release: 0 Summary: A Network Traffic Analyser License: GPL-2.0-or-later AND GPL-3.0-or-later