forked from pool/wireshark
Andreas Stieger
e8aaeac1ab
This release fixes minor vulnerabilities that could be used to trigger dissector crashes, infinite loopsm or cause excessive use of memory resources by making Wireshark read specially crafted packages from the network or a capture file: * CVE-2017-7702 CVE-2017-11410: WBMXL dissector infinite loop (wnpa-sec-2017-13) * CVE-2017-9350 CVE-2017-11411: openSAFETY dissector memory exhaustion (wnpa-sec-2017-28) * CVE-2017-11408: AMQP dissector crash (wnpa-sec-2017-34) * CVE-2017-11407: MQ dissector crash (wnpa-sec-2017-35) * CVE-2017-11406: DOCSIS infinite loop (wnpa-sec-2017-36) OBS-URL: https://build.opensuse.org/package/show/network:utilities/wireshark?expand=0&rev=218 |
||
---|---|---|
.gitattributes | ||
.gitignore | ||
SIGNATURES-2.2.8.txt | ||
wireshark-1.2.0-disable-warning-dialog.patch | ||
wireshark-1.2.0-geoip.patch | ||
wireshark-1.10.0-enable_lua.patch | ||
wireshark-2.2.8.tar.bz2 | ||
wireshark.changes | ||
wireshark.keyring | ||
wireshark.spec |