Description: | Summary: The remote host is missing an update for the 'wireshark' package(s) announced via the SUSE-SU-2013:1276-1 advisory.
Vulnerability Insight: This wireshark version update to 1.6.16 includes several security and general bug fixes.
[link moved to references] l>
* The CAPWAP dissector could crash. Discovered by Laurent Butti. (CVE-2013-4074) * The HTTP dissector could overrun the stack. Discovered by David Keeler. (CVE-2013-4081) * The DCP ETSI dissector could crash. (CVE-2013-4083)
[link moved to references] l>
* The ASN.1 BER dissector could crash. ( CVE-2013-3556 CVE-2013-3557 )
The releases also fix various non-security issues.
Additionally, a crash in processing SCTP filters has been fixed. (bug#816887)
Security Issue references:
* CVE-2013-2486 > * CVE-2013-2487 > * CVE-2013-3555 > * CVE-2013-3556 > * CVE-2013-3557 > * CVE-2013-3558 > * CVE-2013-3559 > * CVE-2013-3560 > * CVE-2013-3561 > * CVE-2013-3562 > * CVE-2013-3561 > * CVE-2013-3561 > * CVE-2013-4074 > * CVE-2013-4075 > * CVE-2013-4076 > * CVE-2013-4077 > * CVE-2013-4078 > * CVE-2013-4079 > * CVE-2013-4080 > * CVE-2013-4081 > * CVE-2013-4082 > * CVE-2013-4083 >
Affected Software/OS: 'wireshark' package(s) on SUSE Linux Enterprise Desktop 10-SP4, SUSE Linux Enterprise Server 10-SP4.
Solution: Please install the updated package(s).
CVSS Score: 7.8
CVSS Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C
|