| Summary: | Multiple vulnerabilities in Wireshark:CVE-2009-2559, CVE-2009-2560, CVE-2009-2561, CVE-2009-2562, CVE-2009-2563 | ||
|---|---|---|---|
| Product: | Sisyphus | Reporter: | Vladimir Lettiev <crux> |
| Component: | wireshark-base | Assignee: | Anton Farygin <rider> |
| Status: | CLOSED FIXED | QA Contact: | qa-sisyphus |
| Severity: | blocker | ||
| Priority: | P3 | CC: | ldv, rider |
| Version: | unstable | Keywords: | security |
| Hardware: | all | ||
| OS: | Linux | ||
| URL: | http://www.wireshark.org/security/wnpa-sec-2009-04.html | ||
Ok. Вечером. Вечером какого дня? Wireshark 1.2.6 is now available. http://www.wireshark.org/security/wnpa-sec-2010-02.html http://www.wireshark.org/security/wnpa-sec-2009-09.html http://www.wireshark.org/security/wnpa-sec-2009-07.html http://www.wireshark.org/security/wnpa-sec-2009-06.html Мне кажется, что пакету wireshark требуется другой мейнтейнер. Саш, повесь его на @everybody или @nobody ок, вечером. done Перевожу на Антона. |
Wireshark 1.2.1 fixes the following vulnerabilities: * The IPMI dissector could overrun a buffer. (Bug 3559) Versions affected: 1.2.0 * The AFS dissector could crash. (Bug 3564) Versions affected: 0.9.2 to 1.2.0 * The Infiniband dissector could crash on some platforms. Versions affected: 1.0.6 to 1.2.0 * The Bluetooth L2CAP dissector could crash. (Bug 3572) Versions affected: 1.2.0 * The RADIUS dissector could crash. (Bug 3578) Versions affected: 1.2.0 * The MIOP dissector could crash. (Bug 3652) Versions affected: 1.2.0 * The sFlow dissector could use excessive CPU and memory. (Bug 3570) Versions affected: 1.2.0