diff --git a/SIGNATURES-2.4.2.txt b/SIGNATURES-2.4.2.txt deleted file mode 100644 index 9c7b9dc..0000000 --- a/SIGNATURES-2.4.2.txt +++ /dev/null @@ -1,60 +0,0 @@ ------BEGIN PGP SIGNED MESSAGE----- -Hash: SHA512 - -wireshark-2.4.2.tar.xz: 28791712 bytes -SHA256(wireshark-2.4.2.tar.xz)=d1acb24735fd35e18e9b7a0555ec58277c2b87da45a19ebeb8087c3dda55f47d -RIPEMD160(wireshark-2.4.2.tar.xz)=3cbe6dfeecc7bf092064e1f91915c413d6cce2de -SHA1(wireshark-2.4.2.tar.xz)=93e1eff9380015a8a9df473ffa38ba0635d25238 - -Wireshark-win64-2.4.2.exe: 57888880 bytes -SHA256(Wireshark-win64-2.4.2.exe)=ef372d8c4e8873a75d2de4028cb4fc7e23db2913de47086e4046f338bbfc6ddc -RIPEMD160(Wireshark-win64-2.4.2.exe)=a601f1a379a1e5e5b830c20838b868a43188c060 -SHA1(Wireshark-win64-2.4.2.exe)=52279fd00aea1e164160789545ddb50a59e59088 - -Wireshark-win32-2.4.2.exe: 52669688 bytes -SHA256(Wireshark-win32-2.4.2.exe)=bcdf1cb77e7bf56b1f99b5d9abd9c555c89b4f32d2a865d5f13b3e43238bfdf8 -RIPEMD160(Wireshark-win32-2.4.2.exe)=5c79f6155bab4134ea16a83a5dcc307ca534188e -SHA1(Wireshark-win32-2.4.2.exe)=da297b6d068cd2313c5cb04333a92160fcff59ce - -Wireshark-win32-2.4.2.msi: 41938944 bytes -SHA256(Wireshark-win32-2.4.2.msi)=11dcf44a87f7f1e3dd514dff7ee49b0e61e59e37d2c881173d027ef9723137c1 -RIPEMD160(Wireshark-win32-2.4.2.msi)=542c0a17ff990d525495dbf92aa3d83d63572ee9 -SHA1(Wireshark-win32-2.4.2.msi)=ea5b56b7a9a861d80420a85e3d27c77ba3b8b009 - -Wireshark-win64-2.4.2.msi: 47005696 bytes -SHA256(Wireshark-win64-2.4.2.msi)=8e4e68751c01b1c89a2b5f07bc2001ab42431462043118f1aae1dacf4df23bf1 -RIPEMD160(Wireshark-win64-2.4.2.msi)=d8977ecc66cddcb5cde24435efbf15bdd1a76a95 -SHA1(Wireshark-win64-2.4.2.msi)=3b6e9e9acac5538ba433a4c0c82be47df6ddd018 - -WiresharkPortable_2.4.2.paf.exe: 45299336 bytes -SHA256(WiresharkPortable_2.4.2.paf.exe)=9aa5c49d28f5ec06db0afb7e31c0aa6cad449f9c74f5dc8a04d504631d752da3 -RIPEMD160(WiresharkPortable_2.4.2.paf.exe)=7cb47e45e82d050423192958e5ad99fb92d56f60 -SHA1(WiresharkPortable_2.4.2.paf.exe)=6c7051ab7dbf8f3739ec071e3409f6180cfd0bcc - -Wireshark 2.4.2 Intel 64.dmg: 35217464 bytes -SHA256(Wireshark 2.4.2 Intel 64.dmg)=111ff7313055ebbc72a2fee4f7b691c723e182c777f5341fd74b279b106686e8 -RIPEMD160(Wireshark 2.4.2 Intel 64.dmg)=ce9988494a9f125e878f8b50e21ebafb488e90c3 -SHA1(Wireshark 2.4.2 Intel 64.dmg)=c1e5c248e0e3793af793dfcf1342cebae33401ee - -You can validate these hashes using the following commands (among others): - - Windows: certutil -hashfile Wireshark-win64-x.y.z.exe SHA256 - Linux (GNU Coreutils): sha256sum wireshark-x.y.z.tar.xz - macOS: shasum -a 256 "Wireshark x.y.z Intel 64.dmg" - Other: openssl sha256 wireshark-x.y.z.tar.xz ------BEGIN PGP SIGNATURE----- - -iQIzBAEBCgAdFiEEWlrbp9vqbD+HIk8ZgiRKeOb+ruoFAlndHcwACgkQgiRKeOb+ -rupDow/+IIRv/SD6gb87vSTz7zL8O57eZHZWZVCLuyBW1tIouX1eBVMWXUHXuppe -DEuSOOHwXUjIU51qjS4sv4rKCv6kzM/umBPBVR7utWtPxPw9oms8rVFASlBDjyud -vMC8T8RGpY1XhsQJiYg4dAEcYLOkH73f8z46Sp3UMstXzIs64meKeQLcG2oBbP++ -yJbQiVQXJL/LPN1spTy16Q+v1GJQ1sIyw+ptoAl6M7N598Cwwvh+geuvDVE6BsjI -gi211PJ4Zbm8P9uVQgiVOwv5RsUBeGyPZmn+ASZp7bLNtaHdZ44xawuQ3hqqIpr1 -DBaohc55IymHkIWECMDK6bqkRLDYkO+7HnmF1XKiUJ6/Rn5qqLc4GahDPNIHonVE -e/9WL5aBCDjetaTFT3UQJLi9c9+ZhGiyGB9WiFaRBovm8+NodZ9Kj+sFJ/cnXsSG -PI0o6I4P7r0NyEhoeovMbyRfa8CUnnCgD4r8XpIrdZbpa9jfzRHm8kMF7wrgxaVS -UG7DtvFaQuvoxE9Fi6bQQYHQwZOjaZ3aLdnZXUP61g5qbjF1MywiEnjkMWVOzdrb -egqUwbGLrhtbOfgVtCL6TI+RrHt5rxQVecNn/l1FoM1Gsqo31884hBDaHyJsjOCJ -8YIn/Y1Fu6TE6YGTyQtW3z2h29cCnChqiHjohqB/NYGV8K3Oz7I= -=nEZj ------END PGP SIGNATURE----- diff --git a/SIGNATURES-2.4.3.txt b/SIGNATURES-2.4.3.txt new file mode 100644 index 0000000..63c4d8e --- /dev/null +++ b/SIGNATURES-2.4.3.txt @@ -0,0 +1,60 @@ +-----BEGIN PGP SIGNED MESSAGE----- +Hash: SHA512 + +wireshark-2.4.3.tar.xz: 28807920 bytes +SHA256(wireshark-2.4.3.tar.xz)=189495996b68940626cb53b31c8902fa1bb5a96b61217cea42734c13925ff12e +RIPEMD160(wireshark-2.4.3.tar.xz)=549b19ff84378536a4d2598ad92ac10db7a76244 +SHA1(wireshark-2.4.3.tar.xz)=1c52b5d03d0dd9fe33c6c225233e89ed6d1d6d28 + +Wireshark-win32-2.4.3.exe: 52674464 bytes +SHA256(Wireshark-win32-2.4.3.exe)=7e5288224c0efc666fd15852e49ed7864e0a70971b5c09181ccfe5f71fd27d6e +RIPEMD160(Wireshark-win32-2.4.3.exe)=b9f488d384716404f25076eaa0dde81705982d5d +SHA1(Wireshark-win32-2.4.3.exe)=8a17cd5eae1e373442b0ed154e56009fdaace790 + +Wireshark-win64-2.4.3.exe: 57888152 bytes +SHA256(Wireshark-win64-2.4.3.exe)=fbe322534581feba53564d99a342f8a75aaa178af8efbaa9fe9e9298233af41d +RIPEMD160(Wireshark-win64-2.4.3.exe)=41fffe5f4f686921d5911365913fd3871f5e1d4d +SHA1(Wireshark-win64-2.4.3.exe)=07f593d04185d79232dc839f8e8df65e46420098 + +Wireshark-win32-2.4.3.msi: 41930752 bytes +SHA256(Wireshark-win32-2.4.3.msi)=13114b733a2c2cdc1e6976d974bb89b6ab5bcaaf0eaac114e66e83e2a12bec78 +RIPEMD160(Wireshark-win32-2.4.3.msi)=866fd277727fab8aa0a56870491ae5e9c1c64f99 +SHA1(Wireshark-win32-2.4.3.msi)=b3ab06e999a3e8c81ec677287a46e1a0d044b35e + +Wireshark-win64-2.4.3.msi: 47005696 bytes +SHA256(Wireshark-win64-2.4.3.msi)=a5aa656e7c6a894635e669d1927d2b71307f7f3b2069ba8c5d7a21048ded19d3 +RIPEMD160(Wireshark-win64-2.4.3.msi)=a9b8d4b073ffbdfe72276cf41be0f39d68be9687 +SHA1(Wireshark-win64-2.4.3.msi)=e41d08ef2cebdc19833abd0b3cee9788f82c5e6b + +WiresharkPortable_2.4.3.paf.exe: 45325376 bytes +SHA256(WiresharkPortable_2.4.3.paf.exe)=50530cb69572b7891c05f1830c72f831336fd96c550ba5b8202da2b907e68f57 +RIPEMD160(WiresharkPortable_2.4.3.paf.exe)=57db4ebb9ba6aac54322545d0b4ecf99d1bee3b1 +SHA1(WiresharkPortable_2.4.3.paf.exe)=7bb2fbd347485b7e2a974dfa2814f84f8addd833 + +Wireshark 2.4.3 Intel 64.dmg: 35234122 bytes +SHA256(Wireshark 2.4.3 Intel 64.dmg)=61f500c923b729be56b4bf453c2fca865cd921b8cc153da8a79d45a3f932bdd3 +RIPEMD160(Wireshark 2.4.3 Intel 64.dmg)=e90cc219073785384f6137fbd74e86972fe1e30e +SHA1(Wireshark 2.4.3 Intel 64.dmg)=711b9a11cced0e4d7b9284598c012217e3555f2d + +You can validate these hashes using the following commands (among others): + + Windows: certutil -hashfile Wireshark-win64-x.y.z.exe SHA256 + Linux (GNU Coreutils): sha256sum wireshark-x.y.z.tar.xz + macOS: shasum -a 256 "Wireshark x.y.z Intel 64.dmg" + Other: openssl sha256 wireshark-x.y.z.tar.xz +-----BEGIN PGP SIGNATURE----- + +iQIzBAEBCgAdFiEEWlrbp9vqbD+HIk8ZgiRKeOb+ruoFAlog0R4ACgkQgiRKeOb+ +ruqtHA/7B/+EgBKG6HFGqz9I2E25adozILjnsOrnFaqnh1j7c5gaLhstsw9LY2Xz +rogCUA9i5BGT0RqEvGBtxFWZPBKcSkKmfOhW/VZoxePvnilL6pyqPzGB/rww8MTw +oh1U63A9n6gmgxJMfFGkVg5dyufaOKVywJ/DPAkLmIQR7lZfxCvHddlKx/10hq6k +YbAaupqo/ZA8I05SV2Ovrj8LAeqxwv9C7vrHmp2lBTslTPxCO6+byBgKaw8zuAO/ +6yjrplQy6fji+lcOKrNVhELo5D9L9vlPRx0Drvpktb4jd+lt+Rz2oLrIa5auOrlD +SzKH05HdSkzjdStHlzOwRy2mCOusY0EIGZ6eFQRZz4w+KRWWIlU87SXifuzczMwt +gnJRWT2owFrmeN1ihqK8iiH+4/zcWDxElNWw3L0INKmWXaWchRkJ1M7TP86Sr60F +s15RhkkljFEFHBo8DHDs2XJ81N0eDskHliZzjV87wbMEDp3mXAiyOKjyiFflOH9e +DsSxsnt+PfthkmwsFnF8kVEeylKMeihrNMTQHMJ6o1srwowRZa0mP6Pl/TrdyGZr ++6ER/kxkltmZjZBwOCszMZxZdNoyteANwZzGu/y/I1IpRGVI6WGxYIhLRiOJTljZ +90N+3nRv9Qff6CJvn9peAZS7/Rz2dldRiggHu2NFozCQExAlG3k= +=yV+r +-----END PGP SIGNATURE----- diff --git a/wireshark-2.4.2.tar.xz b/wireshark-2.4.2.tar.xz deleted file mode 100644 index 4ef59ac..0000000 --- a/wireshark-2.4.2.tar.xz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:d1acb24735fd35e18e9b7a0555ec58277c2b87da45a19ebeb8087c3dda55f47d -size 28791712 diff --git a/wireshark-2.4.3.tar.xz b/wireshark-2.4.3.tar.xz new file mode 100644 index 0000000..99bd040 --- /dev/null +++ b/wireshark-2.4.3.tar.xz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:189495996b68940626cb53b31c8902fa1bb5a96b61217cea42734c13925ff12e +size 28807920 diff --git a/wireshark.changes b/wireshark.changes index 6414e07..0c4f078 100644 --- a/wireshark.changes +++ b/wireshark.changes @@ -1,3 +1,16 @@ +------------------------------------------------------------------- +Fri Dec 1 13:02:14 UTC 2017 - astieger@suse.com + +- Wireshark 2.4.3: + This release fixes minor vulnerabilities that could be used to + trigger dissector crashes by making Wireshark read specially + crafted packages from the network or capture files (bsc#1070727): + * CVE-2017-17084: IWARP_MPA dissector crash (wnpa-sec-2017-47) + * CVE-2017-17083: NetBIOS dissector crash (wnpa-sec-2017-48) + * CVE-2017-17085: CIP Safety dissector crash (wnpa-sec-2017-49) + * Further bug fixes and updated protocol support as listed in: + https://www.wireshark.org/docs/relnotes/wireshark-2.4.3.html + ------------------------------------------------------------------- Wed Oct 11 09:54:25 UTC 2017 - astieger@suse.com diff --git a/wireshark.spec b/wireshark.spec index 4eeb3db..2be8b05 100644 --- a/wireshark.spec +++ b/wireshark.spec @@ -36,7 +36,7 @@ %bcond_with geoip %endif Name: wireshark -Version: 2.4.2 +Version: 2.4.3 Release: 0 Summary: A Network Traffic Analyser License: GPL-2.0+ AND GPL-3.0+