Updated wireshark packages fix two security vulnerabilities
Publication date: 19 Dec 2013Modification date: 19 Dec 2013
Type: security
Affected Mageia releases : 3
CVE: CVE-2013-7112 , CVE-2013-7114
Description
Updated wireshark packages fix security vulnerabilities: The SIP dissector could go into an infinite loop (CVE-2013-7112). The NTLMSSP v2 dissector could crash (CVE-2013-7114).
References
- https://www.wireshark.org/security/wnpa-sec-2013-66.html
- https://www.wireshark.org/security/wnpa-sec-2013-68.html
- http://www.wireshark.org/docs/relnotes/wireshark-1.8.12.html
- http://www.wireshark.org/news/20131217.html
- https://bugs.mageia.org/show_bug.cgi?id=12028
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-7112
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-7114
SRPMS
3/core
- wireshark-1.8.12-1.mga3