Oval Definition:oval:org.mitre.oval:def:26423
Revision Date:2014-12-08Version:9
Title:RHSA-2014:1677 -- wireshark security update (Moderate)
Description:Wireshark is a network protocol analyzer. It is used to capture and browsethe traffic running on a computer network.Multiple flaws were found in Wireshark. If Wireshark read a malformedpacket off a network or opened a malicious dump file, it could crash or,possibly, execute arbitrary code as the user running Wireshark.(CVE-2014-6429, CVE-2014-6430, CVE-2014-6431, CVE-2014-6432)Several denial of service flaws were found in Wireshark. Wireshark couldcrash or stop responding if it read a malformed packet off a network, oropened a malicious dump file. (CVE-2014-6421, CVE-2014-6422, CVE-2014-6423,CVE-2014-6425, CVE-2014-6428)All wireshark users are advised to upgrade to these updated packages, whichcontain backported patches to correct these issues. All running instancesof Wireshark must be restarted for the update to take effect.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CESA-2014:1677
CVE-2014-6421
CVE-2014-6422
CVE-2014-6423
CVE-2014-6425
CVE-2014-6428
CVE-2014-6429
CVE-2014-6430
CVE-2014-6431
CVE-2014-6432
RHSA-2014:1677
Platform(s):CentOS Linux 5
Red Hat Enterprise Linux 5
Product(s):wireshark
Definition Synopsis
  • Red Hat Enterprise Linux 5 release section
  • The operating system installed on the system is Red Hat Enterprise Linux 5
  • AND wireshark-debuginfo is earlier than 0:1.0.15-7.el5_11
  • Red Hat Enterprise Linux 5 and CentOS Linux 5 release section
  • Operation system section
  • The operating system installed on the system is Red Hat Enterprise Linux 5
  • OR The operating system installed on the system is CentOS Linux 5.x
  • AND Packages match section
  • wireshark-gnome is earlier than 0:1.0.15-7.el5_11
  • OR wireshark is earlier than 0:1.0.15-7.el5_11
  • BACK