Source: wireshark
Severity: serious

Hi,

multiple vulnerabilities were found in various wireshark detectors:

CVE-2013-4074 wireshark: DoS (crash) in the CAPWAP dissector
CVE-2013-4075 wireshark: DoS (crash) in the GMR-1 BCCH dissector
CVE-2013-4076 wireshark: Invalid free in the PPP dissector
CVE-2013-4077 wireshark: Array index error in the NBAP dissector
CVE-2013-4078 wireshark: DoS (infinite loop) in the RDP dissector
CVE-2013-4079 wireshark: DoS (infinite loop, application hang) in the GSM CBCH 
dissector
CVE-2013-4080 wireshark: DoS (infinite loop, CPU & memory consumption) in the 
Assa Abloy R3 dissector 
CVE-2013-4081 wireshark: DoS (infinite loop) in the HTTP dissector
CVE-2013-4082 wireshark: Heap-based buffer overflow in the Ixia
IxVeriWave file parser

More information can be found on the 1.8.8 and 1.6.16 release notes.

Regards,
-- 
Yves-Alexis

-- System Information:
Debian Release: jessie/sid
  APT prefers unstable
  APT policy: (500, 'unstable'), (500, 'testing'), (500, 'stable'), (1, 
'experimental')
Architecture: amd64 (x86_64)

Kernel: Linux 3.9-1-grsec-amd64 (SMP w/4 CPU cores)
Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

-- no debconf information


-- 
To UNSUBSCRIBE, email to [email protected]
with a subject of "unsubscribe". Trouble? Contact [email protected]

Reply via email to