From 7ad87b11beb5ef881460923910270c3c43802fb3f1ee1c0c81fad23945edd282 Mon Sep 17 00:00:00 2001 From: Andreas Stieger Date: Wed, 23 May 2012 19:01:36 +0000 Subject: [PATCH] add CVEs: * wnpa-sec-2012-08 / CVE-2012-2392 * wnpa-sec-2012-09 / CVE-2012-2393 * wnpa-sec-2012-10 / CVE-2012-2394 OBS-URL: https://build.opensuse.org/package/show/network:utilities/wireshark?expand=0&rev=57 --- wireshark.changes | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/wireshark.changes b/wireshark.changes index f8a45d6..d7221b1 100644 --- a/wireshark.changes +++ b/wireshark.changes @@ -4,15 +4,15 @@ Tue May 22 19:02:42 UTC 2012 - andreas.stieger@gmx.de - adjust wireshark-corosync-packet-dissector.patch for source changes - update to upstream 1.6.8 + security fixes - * wnpa-sec-2012-08 + * wnpa-sec-2012-08 / CVE-2012-2392 Infinite and large loops in the ANSI MAP, ASF, BACapp, Bluetooth HCI, IEEE 802.11, IEEE 802.3, LTP, and R3 dissectors have been fixed. Discovered by Laurent Butti. (Bugs 6805, 7118, 7119, 7120, 7121, 7122, 7124, 7125) - * wnpa-sec-2012-09 + * wnpa-sec-2012-09 / CVE-2012-2393 The DIAMETER dissector could try to allocate memory improperly and crash. (Bug 7138) - * wnpa-sec-2012-10 + * wnpa-sec-2012-10 / CVE-2012-2394 Wireshark could crash on SPARC processors due to misaligned memory. Discovered by Klaus Heckelmann. (Bug 7221) + bug fixes