Andreas Stieger 2013-01-31 06:07:01 +00:00 committed by Git OBS Bridge
parent 33ccd50616
commit aea30e37aa

View File

@ -1,28 +1,30 @@
-------------------------------------------------------------------
Tue Jan 29 22:31:50 UTC 2013 - andreas.stieger@gmx.de
Thu Jan 31 06:01:17 UTC 2013 - andreas.stieger@gmx.de
- update to 1.8.5 [bnc#801131]
+ vulnerabilities fixed:
* Infinite and large loops in the Bluetooth HCI, CSN.1, DCP-ETSI
DOCSIS CM-STAUS, IEEE 802.3 Slow Protocols, MPLS, R3, RTPS,
SDP, and SIP dissectors
wnpa-sec-2013-01
wnpa-sec-2013-01 CVE-2013-1572 CVE-2013-1573 CVE-2013-1574
CVE-2013-1575 CVE-2013-1576 CVE-2013-1577 CVE-2013-1578
CVE-2013-1579 CVE-2013-1580 CVE-2013-1581
* The CLNP dissector could crash
wnpa-sec-2013-02
wnpa-sec-2013-02 CVE-2013-1582
* The DTN dissector could crash
wnpa-sec-2013-03
wnpa-sec-2013-03 CVE-2013-1583 CVE-2013-1584
* The MS-MMC dissector (and possibly others) could crash
wnpa-sec-2013-04
wnpa-sec-2013-04 CVE-2013-1585
* The DTLS dissector could crash
wnpa-sec-2013-05
wnpa-sec-2013-05 CVE-2013-1586
* The ROHC dissector could crash
wnpa-sec-2013-06
wnpa-sec-2013-06 CVE-2013-1587
* The DCP-ETSI dissector could corrupt memory
wnpa-sec-2013-07
wnpa-sec-2013-07 CVE-2013-1588
* The Wireshark dissection engine could crash
wnpa-sec-2013-08
wnpa-sec-2013-08 CVE-2013-1589
* The NTLMSSP dissector could overflow a buffer
wnpa-sec-2013-09
wnpa-sec-2013-09 CVE-2013-1590
+ Further bug fixes and updated protocol support as listed in:
http://www.wireshark.org/docs/relnotes/wireshark-1.8.5.html