Security update for wireshark
This update to wireshark 1.12.13 fixes the following issues: - CVE-2016-6504: wireshark: NDS dissector crash (bsc#991012) - CVE-2016-6505: wireshark: PacketBB dissector could divide by zero (bsc#991013) - CVE-2016-6506: wireshark: WSP infinite loop (bsc#991015) - CVE-2016-6507: wireshark: MMSE infinite loop (bsc#991016) - CVE-2016-6508: wireshark: RLC long loop (bsc#991017) - CVE-2016-6509: wireshark: LDSS dissector crash (bsc#991018) - CVE-2016-6510: wireshark: RLC dissector crash (bsc#991019) - CVE-2016-6511: wireshark: OpenFlow long loop (bnc991020) - CVE-2016-5350: SPOOLS infinite loop (bsc#983671) - CVE-2016-5351: IEEE 802.11 dissector crash (bsc#983671) - CVE-2016-5352: IEEE 802.11 dissector crash, different from wpna-sec-2016-30 (bsc#983671) - CVE-2016-5353: UMTS FP crash (bsc#983671) - CVE-2016-5354: USB dissector crash (bsc#983671) - CVE-2016-5355: Toshiba file parser crash (bsc#983671) - CVE-2016-5356: CoSine file parser crash (bsc#983671) - CVE-2016-5357: NetScreen file parser crash (bsc#983671) - CVE-2016-5358: Ethernet dissector crash (bsc#983671) - CVE-2016-5359: WBXML infinite loop (bsc#983671) For more details please see: https://www.wireshark.org/docs/relnotes/wireshark-1.12.12.html https://www.wireshark.org/docs/relnotes/wireshark-1.12.13.html
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update to wireshark 1.12.13 fixes the following issues: - CVE-2016-6504: wireshark: NDS dissector crash (bsc#991012) - CVE-2016-6505: wireshark: PacketBB dissector could divide by zero (bsc#991013) - CVE-2016-6506: wireshark: WSP infinite loop (bsc#991015) - CVE-2016-6507: wireshark: MMSE infinite loop (bsc#991016) - CVE-2016-6508: wireshark: RLC long loop (bsc#991017) - CVE-2016-6509: wireshark: LDSS dissector crash (bsc#991018) - CVE-2016-6510: wireshark: RLC dissector crash (bsc#991019) - CVE-2016-6511: wireshark: OpenFlow long loop (bnc991020) - CVE-2016-5350: SPOOLS infinite loop (bsc#983671) - CVE-2016-5351: IEEE 802.11 dissector crash (bsc#983671) - CVE-2016-5352: IEEE 802.11 dissector crash, different from wpna-sec-2016-30 (bsc#983671) - CVE-2016-5353: UMTS FP crash (bsc#983671) - CVE-2016-5354: USB dissector crash (bsc#983671) - CVE-2016-5355: Toshiba file parser crash (bsc#983671) - CVE-2016-5356: CoSine file parser crash (bsc#983671) - CVE-2016-5357: NetScreen file parser crash (bsc#983671) - CVE-2016-5358: Ethernet dissector crash (bsc#983671) - CVE-2016-5359: WBXML infinite loop (bsc#983671) For more details please see: https://www.wireshark.org/docs/relnotes/wireshark-1.12.12.html https://www.wireshark.org/docs/relnotes/wireshark-1.12.13.html
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/983671
- https://bugzilla.suse.com/991012
- https://bugzilla.suse.com/991013
- https://bugzilla.suse.com/991015
- https://bugzilla.suse.com/991016
- https://bugzilla.suse.com/991017
- https://bugzilla.suse.com/991018
- https://bugzilla.suse.com/991019
- https://bugzilla.suse.com/991020
- https://www.suse.com/security/cve/CVE-2016-5350
- https://www.suse.com/security/cve/CVE-2016-5351
- https://www.suse.com/security/cve/CVE-2016-5352
- https://www.suse.com/security/cve/CVE-2016-5353
- https://www.suse.com/security/cve/CVE-2016-5354
- https://www.suse.com/security/cve/CVE-2016-5355
- https://www.suse.com/security/cve/CVE-2016-5356
- https://www.suse.com/security/cve/CVE-2016-5357
- https://www.suse.com/security/cve/CVE-2016-5358
- https://www.suse.com/security/cve/CVE-2016-5359
- https://www.suse.com/security/cve/CVE-2016-6504
- https://www.suse.com/security/cve/CVE-2016-6505
- https://www.suse.com/security/cve/CVE-2016-6506
- https://www.suse.com/security/cve/CVE-2016-6507
- https://www.suse.com/security/cve/CVE-2016-6508
- https://www.suse.com/security/cve/CVE-2016-6509
- https://www.suse.com/security/cve/CVE-2016-6510
- https://www.suse.com/security/cve/CVE-2016-6511
- https://www.suse.com/support/update/announcement/2016/suse-su-20162212-1/