Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.10.2023.0275
Category:Mageia Linux Local Security Checks
Title:Mageia: Security Advisory (MGASA-2023-0275)
Summary:The remote host is missing an update for the 'wireshark' package(s) announced via the MGASA-2023-0275 advisory.
Description:Summary:
The remote host is missing an update for the 'wireshark' package(s) announced via the MGASA-2023-0275 advisory.

Vulnerability Insight:
The updated wireshark packages fix security vulnerabilities:

Due to a failure in validating the length provided by an
attacker-crafted CP2179 packet, Wireshark versions 2.0.0 through 4.0.7
is susceptible to a divide by zero allowing for a denial of service
attack. (CVE-2023-2906)

BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to
3.6.15 allows denial of service via packet injection or crafted capture
file. (CVE-2023-4511)

CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of
service via packet injection or crafted capture file. (CVE-2023-4512)

BT SDP dissector memory leak in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to
3.6.15 allows denial of service via packet injection or crafted capture
file. (CVE-2023-4513)

Affected Software/OS:
'wireshark' package(s) on Mageia 9.

Solution:
Please install the updated package(s).

CVSS Score:
7.8

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2023-2906
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/L4AVRUYSHDNEAJILVSGY5W6MPOMG2YRF/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6HCUPLDY7HLPO46PHMGIJSUBJFTT237C/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TRKHFQPWFU7F3OXTL6IEIQSJG6FVXZTZ/
https://gitlab.com/wireshark/wireshark/-/issues/19229
https://takeonme.org/cves/CVE-2023-2906.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-4511
GitLab Issue #19258
https://gitlab.com/wireshark/wireshark/-/issues/19258
https://www.wireshark.org/security/wnpa-sec-2023-24.html
https://lists.debian.org/debian-lts-announce/2024/02/msg00016.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-4512
GitLab Issue #19144
https://gitlab.com/wireshark/wireshark/-/issues/19144
https://www.wireshark.org/security/wnpa-sec-2023-23.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-4513
GitLab Issue #19259
https://gitlab.com/wireshark/wireshark/-/issues/19259
https://www.wireshark.org/security/wnpa-sec-2023-25.html
CopyrightCopyright (C) 2023 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.