• [SECURITY] [DSA 2395-1] wireshark security update

    From Moritz Muehlenhoff@1:229/2 to All on Fri Jan 27 19:30:02 2012
    From: [email protected]

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    - ------------------------------------------------------------------------- Debian Security Advisory DSA-2395-1 [email protected] http://www.debian.org/security/ Moritz Muehlenhoff January 27, 2012 http://www.debian.org/security/faq
    - -------------------------------------------------------------------------

    Package : wireshark
    Vulnerability : buffer underflow
    Problem type : remote
    Debian-specific: no
    CVE ID : CVE-2011-3483 CVE-2012-0041 CVE-2012-0042 CVE-2012-0066
    CVE-2012-0067 CVE-2012-0068

    Laurent Butti discovered a buffer underflow in the LANalyzer dissector
    of the Wireshark network traffic analyzer, which could lead to the
    execution of arbitrary code (CVE-2012-0068)

    This update also addresses several bugs, which can lead to crashes of Wireshark. These are not treated as security issues, but are fixed
    nonetheless if security updates are scheduled: CVE-2011-3483,
    CVE-2012-0041, CVE-2012-0042, CVE-2012-0066 and CVE-2012-0067.

    For the stable distribution (squeeze), this problem has been fixed in
    version 1.2.11-6+squeeze6.

    For the unstable distribution (sid), this problem has been fixed in
    version 1.6.5-1.

    We recommend that you upgrade your wireshark packages.

    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: http://www.debian.org/security/

    Mailing list: [email protected]
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.4.11 (GNU/Linux)

    iEYEARECAAYFAk8i6FwACgkQXm3vHE4uylrDkQCg5khLjhIkYAbItri576Q4ufHt BFwAnjQINWnTLRDCg3CLlZOX6ke/Wn3T
    =o4sR
    -----END PGP SIGNATURE-----


    --
    To UNSUBSCRIBE, email to [email protected]
    with a subject of "unsubscribe". Trouble? Contact [email protected] Archive: http://lists.debian.org/[email protected]

    --- SoupGate-Win32 v1.05
    * Origin: you cannot sedate... all the things you hate (1:229/2)