Security update for wireshark
wireshark was updated to version 1.12.13 to fix the following issues: - CVE-2016-6504: wireshark: NDS dissector crash (bnc#991012) - CVE-2016-6505: wireshark: PacketBB dissector could divide by zero (bnc#991013) - CVE-2016-6506: wireshark: WSP infinite loop (bnc#991015) - CVE-2016-6507: wireshark: MMSE infinite loop (bnc#991016) - CVE-2016-6508: wireshark: RLC long loop (bnc#991017) - CVE-2016-6509: wireshark: LDSS dissector crash (bnc#991018) - CVE-2016-6510: wireshark: RLC dissector crash (bnc#991019) - CVE-2016-6511: wireshark: OpenFlow long loop (bnc991020) - CVE-2016-5350: SPOOLS infinite loop (bsc#983671). - CVE-2016-5351: IEEE 802.11 dissector crash (bsc#983671). - CVE-2016-5352: IEEE 802.11 dissector crash, different from wpna-sec-2016-30 (bsc#983671). - CVE-2016-5353: UMTS FP crash (bsc#983671). - CVE-2016-5354: USB dissector crash (bsc#983671). - CVE-2016-5355: Toshiba file parser crash (bsc#983671). - CVE-2016-5356: CoSine file parser crash (bsc#983671). - CVE-2016-5357: NetScreen file parser crash (bsc#983671). - CVE-2016-5358: Ethernet dissector crash (bsc#983671). - CVE-2016-5359: WBXML infinite loop (bsc#983671). For more details please see: https://www.wireshark.org/docs/relnotes/wireshark-1.12.12.html https://www.wireshark.org/docs/relnotes/wireshark-1.12.13.html
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
wireshark was updated to version 1.12.13 to fix the following issues: - CVE-2016-6504: wireshark: NDS dissector crash (bnc#991012) - CVE-2016-6505: wireshark: PacketBB dissector could divide by zero (bnc#991013) - CVE-2016-6506: wireshark: WSP infinite loop (bnc#991015) - CVE-2016-6507: wireshark: MMSE infinite loop (bnc#991016) - CVE-2016-6508: wireshark: RLC long loop (bnc#991017) - CVE-2016-6509: wireshark: LDSS dissector crash (bnc#991018) - CVE-2016-6510: wireshark: RLC dissector crash (bnc#991019) - CVE-2016-6511: wireshark: OpenFlow long loop (bnc991020) - CVE-2016-5350: SPOOLS infinite loop (bsc#983671). - CVE-2016-5351: IEEE 802.11 dissector crash (bsc#983671). - CVE-2016-5352: IEEE 802.11 dissector crash, different from wpna-sec-2016-30 (bsc#983671). - CVE-2016-5353: UMTS FP crash (bsc#983671). - CVE-2016-5354: USB dissector crash (bsc#983671). - CVE-2016-5355: Toshiba file parser crash (bsc#983671). - CVE-2016-5356: CoSine file parser crash (bsc#983671). - CVE-2016-5357: NetScreen file parser crash (bsc#983671). - CVE-2016-5358: Ethernet dissector crash (bsc#983671). - CVE-2016-5359: WBXML infinite loop (bsc#983671). For more details please see: https://www.wireshark.org/docs/relnotes/wireshark-1.12.12.html https://www.wireshark.org/docs/relnotes/wireshark-1.12.13.html
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/983671
- https://bugzilla.suse.com/991012
- https://bugzilla.suse.com/991013
- https://bugzilla.suse.com/991015
- https://bugzilla.suse.com/991016
- https://bugzilla.suse.com/991017
- https://bugzilla.suse.com/991018
- https://bugzilla.suse.com/991019
- https://bugzilla.suse.com/991020
- https://www.suse.com/security/cve/CVE-2016-5350
- https://www.suse.com/security/cve/CVE-2016-5351
- https://www.suse.com/security/cve/CVE-2016-5352
- https://www.suse.com/security/cve/CVE-2016-5353
- https://www.suse.com/security/cve/CVE-2016-5354
- https://www.suse.com/security/cve/CVE-2016-5355
- https://www.suse.com/security/cve/CVE-2016-5356
- https://www.suse.com/security/cve/CVE-2016-5357
- https://www.suse.com/security/cve/CVE-2016-5358
- https://www.suse.com/security/cve/CVE-2016-5359
- https://www.suse.com/security/cve/CVE-2016-6504
- https://www.suse.com/security/cve/CVE-2016-6505
- https://www.suse.com/security/cve/CVE-2016-6506
- https://www.suse.com/security/cve/CVE-2016-6507
- https://www.suse.com/security/cve/CVE-2016-6508
- https://www.suse.com/security/cve/CVE-2016-6509
- https://www.suse.com/security/cve/CVE-2016-6510
- https://www.suse.com/security/cve/CVE-2016-6511
- https://www.suse.com/support/update/announcement/2016/suse-su-20162453-1/