Oval Definition:oval:org.mitre.oval:def:24432
Revision Date:2014-05-26Version:33
Title:ELSA-2014:0341: wireshark security update (Moderate)
Description:Wireshark is a network protocol analyzer. It is used to capture and browsethe traffic running on a computer network.Multiple flaws were found in Wireshark. If Wireshark read a malformedpacket off a network or opened a malicious dump file, it could crash or,possibly, execute arbitrary code as the user running Wireshark.(CVE-2013-3559, CVE-2013-4083, CVE-2014-2281, CVE-2014-2299)Several denial of service flaws were found in Wireshark. Wireshark couldcrash or stop responding if it read a malformed packet off a network, oropened a malicious dump file. (CVE-2012-5595, CVE-2012-5598, CVE-2012-5599,CVE-2012-5600, CVE-2012-6056, CVE-2012-6060, CVE-2012-6061, CVE-2012-6062,CVE-2013-3557, CVE-2013-4081, CVE-2013-4927, CVE-2013-4931, CVE-2013-4932,CVE-2013-4933, CVE-2013-4934, CVE-2013-4935, CVE-2013-5721, CVE-2013-7112)All Wireshark users are advised to upgrade to these updated packages, whichcontain backported patches to correct these issues. All running instancesof Wireshark must be restarted for the update to take effect.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2012-5595
CVE-2012-5598
CVE-2012-5599
CVE-2012-5600
CVE-2012-6056
CVE-2012-6060
CVE-2012-6061
CVE-2012-6062
CVE-2013-3557
CVE-2013-3559
CVE-2013-4081
CVE-2013-4083
CVE-2013-4927
CVE-2013-4931
CVE-2013-4932
CVE-2013-4933
CVE-2013-4934
CVE-2013-4935
CVE-2013-5721
CVE-2013-7112
CVE-2014-2281
CVE-2014-2299
ELSA-2014:0341-01
Platform(s):Oracle Linux 5
Product(s):wireshark
Definition Synopsis
  • Oracle Linux 5.x
  • AND rpm test
  • wireshark-gnome is earlier than 0:1.0.15-6.el5_10
  • OR wireshark is earlier than 0:1.0.15-6.el5_10
  • BACK