ALT-BU-2014-2962-1
Branch sisyphus update bulletin.
Closed vulnerabilities
BDU:2016-01651
Уязвимость библиотеки Pixman, позволяющая нарушителю вызвать отказ в обслуживании (завершение работы приложения) или выполнить произвольный код
Modified: 2024-11-21
CVE-2014-9766
Integer overflow in the create_bits function in pixman-bits-image.c in Pixman before 0.32.6 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via large height and stride values.
- DSA-3525
- DSA-3525
- [oss-security] 20160224 [Pixman] create_bits(): Cast the result of height * stride to size_t
- [oss-security] 20160224 [Pixman] create_bits(): Cast the result of height * stride to size_t
- [oss-security] 20160224 Re: [Pixman] create_bits(): Cast the result of height * stride to size_t
- [oss-security] 20160224 Re: [Pixman] create_bits(): Cast the result of height * stride to size_t
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- USN-2918-1
- USN-2918-1
- https://bugs.freedesktop.org/show_bug.cgi?id=69014
- https://bugs.freedesktop.org/show_bug.cgi?id=69014
- https://bugzilla.redhat.com/show_bug.cgi?id=972647
- https://bugzilla.redhat.com/show_bug.cgi?id=972647
- https://cgit.freedesktop.org/pixman/commit/?id=857e40f3d2bc2cfb714913e0cd7e6184cf69aca3
- https://cgit.freedesktop.org/pixman/commit/?id=857e40f3d2bc2cfb714913e0cd7e6184cf69aca3
- [Pixman] 20140409 [PATCH] create_bits(): Cast the result of height * stride to size_t
- [Pixman] 20140409 [PATCH] create_bits(): Cast the result of height * stride to size_t
- [xorg-announce] 20140705 [ANNOUNCE] pixman release 0.32.6 now available
- [xorg-announce] 20140705 [ANNOUNCE] pixman release 0.32.6 now available
Closed vulnerabilities
BDU:2015-00767
Уязвимость программного обеспечения Wireshark Network Protocol Analyzer, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации
BDU:2015-00768
Уязвимость программного обеспечения Wireshark Network Protocol Analyzer, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации
BDU:2015-00777
Уязвимость программного обеспечения Wireshark Network Protocol Analyzer, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации
BDU:2015-00778
Уязвимость программного обеспечения Wireshark Network Protocol Analyzer, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации
BDU:2015-00779
Уязвимость программного обеспечения Wireshark Network Protocol Analyzer, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации
BDU:2015-00780
Уязвимость программного обеспечения Wireshark Network Protocol Analyzer, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации
BDU:2015-00781
Уязвимость программного обеспечения Wireshark Network Protocol Analyzer, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации
Modified: 2024-11-21
CVE-2014-5161
The dissect_log function in plugins/irda/packet-irda.c in the IrDA dissector in Wireshark 1.10.x before 1.10.9 does not properly strip '\n' characters, which allows remote attackers to cause a denial of service (buffer underflow and application crash) via a crafted packet.
- SUSE-SU-2014:1221
- SUSE-SU-2014:1221
- openSUSE-SU-2014:1038
- openSUSE-SU-2014:1038
- openSUSE-SU-2014:1249
- openSUSE-SU-2014:1249
- 57593
- 57593
- DSA-3002
- DSA-3002
- http://www.wireshark.org/security/wnpa-sec-2014-08.html
- http://www.wireshark.org/security/wnpa-sec-2014-08.html
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=16f8ba1bed579344df373bf38fff552ab8baf380
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=16f8ba1bed579344df373bf38fff552ab8baf380
Modified: 2024-11-21
CVE-2014-5162
The read_new_line function in wiretap/catapult_dct2000.c in the Catapult DCT2000 dissector in Wireshark 1.10.x before 1.10.9 does not properly strip '\n' and '\r' characters, which allows remote attackers to cause a denial of service (off-by-one buffer underflow and application crash) via a crafted packet.
- SUSE-SU-2014:1221
- SUSE-SU-2014:1221
- openSUSE-SU-2014:1038
- openSUSE-SU-2014:1038
- openSUSE-SU-2014:1249
- openSUSE-SU-2014:1249
- 57593
- 57593
- DSA-3002
- DSA-3002
- http://www.wireshark.org/security/wnpa-sec-2014-08.html
- http://www.wireshark.org/security/wnpa-sec-2014-08.html
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=16f8ba1bed579344df373bf38fff552ab8baf380
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=16f8ba1bed579344df373bf38fff552ab8baf380
Modified: 2024-11-21
CVE-2014-5163
The APN decode functionality in (1) epan/dissectors/packet-gtp.c and (2) epan/dissectors/packet-gsm_a_gm.c in the GTP and GSM Management dissectors in Wireshark 1.10.x before 1.10.9 does not completely initialize a certain buffer, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
- SUSE-SU-2014:1221
- SUSE-SU-2014:1221
- openSUSE-SU-2014:1038
- openSUSE-SU-2014:1038
- openSUSE-SU-2014:1249
- openSUSE-SU-2014:1249
- 57593
- 57593
- DSA-3002
- DSA-3002
- http://www.wireshark.org/security/wnpa-sec-2014-09.html
- http://www.wireshark.org/security/wnpa-sec-2014-09.html
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=10216
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=10216
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=3fc441e7a5008640c68ec985e669d5092414a519
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=3fc441e7a5008640c68ec985e669d5092414a519
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=dd7134d907350ccc574cdec596f4162860912bb9
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=dd7134d907350ccc574cdec596f4162860912bb9
Modified: 2024-11-21
CVE-2014-5164
The rlc_decode_li function in epan/dissectors/packet-rlc.c in the RLC dissector in Wireshark 1.10.x before 1.10.9 initializes a certain structure member only after this member is used, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
- SUSE-SU-2014:1221
- SUSE-SU-2014:1221
- openSUSE-SU-2014:1038
- openSUSE-SU-2014:1038
- openSUSE-SU-2014:1249
- openSUSE-SU-2014:1249
- 57593
- 57593
- DSA-3002
- DSA-3002
- http://www.wireshark.org/security/wnpa-sec-2014-10.html
- http://www.wireshark.org/security/wnpa-sec-2014-10.html
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=9795
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=9795
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=ba6eb5c72ffe82ca0e51c7083240975a5b118ad2
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=ba6eb5c72ffe82ca0e51c7083240975a5b118ad2
Modified: 2024-11-21
CVE-2014-5165
The dissect_ber_constrained_bitstring function in epan/dissectors/packet-ber.c in the ASN.1 BER dissector in Wireshark 1.10.x before 1.10.9 does not properly validate padding values, which allows remote attackers to cause a denial of service (buffer underflow and application crash) via a crafted packet.
- SUSE-SU-2014:1221
- SUSE-SU-2014:1221
- openSUSE-SU-2014:1038
- openSUSE-SU-2014:1038
- openSUSE-SU-2014:1249
- openSUSE-SU-2014:1249
- 57593
- 57593
- DSA-3002
- DSA-3002
- http://www.wireshark.org/security/wnpa-sec-2014-11.html
- http://www.wireshark.org/security/wnpa-sec-2014-11.html
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=10187
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=10187
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=17a552666b50896a9b9dde8ee6a1052e7f9a622e
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=17a552666b50896a9b9dde8ee6a1052e7f9a622e
Modified: 2024-11-21
CVE-2014-6421
Use-after-free vulnerability in the SDP dissector in Wireshark 1.10.x before 1.10.10 allows remote attackers to cause a denial of service (application crash) via a crafted packet that leverages split memory ownership between the SDP and RTP dissectors.
- http://linux.oracle.com/errata/ELSA-2014-1676
- http://linux.oracle.com/errata/ELSA-2014-1676
- http://linux.oracle.com/errata/ELSA-2014-1677
- http://linux.oracle.com/errata/ELSA-2014-1677
- SUSE-SU-2014:1221
- SUSE-SU-2014:1221
- openSUSE-SU-2014:1249
- openSUSE-SU-2014:1249
- RHSA-2014:1676
- RHSA-2014:1676
- RHSA-2014:1677
- RHSA-2014:1677
- 60280
- 60280
- 61929
- 61929
- 61933
- 61933
- http://www.wireshark.org/security/wnpa-sec-2014-12.html
- http://www.wireshark.org/security/wnpa-sec-2014-12.html
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=9920
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=9920
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=04c05a21e34cec326f1aff2f5f8a6e74e1ced984
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=04c05a21e34cec326f1aff2f5f8a6e74e1ced984
Modified: 2024-11-21
CVE-2014-6422
The SDP dissector in Wireshark 1.10.x before 1.10.10 creates duplicate hashtables for a media channel, which allows remote attackers to cause a denial of service (application crash) via a crafted packet to the RTP dissector.
- http://linux.oracle.com/errata/ELSA-2014-1676
- http://linux.oracle.com/errata/ELSA-2014-1676
- http://linux.oracle.com/errata/ELSA-2014-1677
- http://linux.oracle.com/errata/ELSA-2014-1677
- SUSE-SU-2014:1221
- SUSE-SU-2014:1221
- openSUSE-SU-2014:1249
- openSUSE-SU-2014:1249
- RHSA-2014:1676
- RHSA-2014:1676
- RHSA-2014:1677
- RHSA-2014:1677
- 60280
- 60280
- 60578
- 60578
- 61929
- 61929
- 61933
- 61933
- DSA-3049
- DSA-3049
- http://www.wireshark.org/security/wnpa-sec-2014-12.html
- http://www.wireshark.org/security/wnpa-sec-2014-12.html
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=9920
- https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=9920
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=04c05a21e34cec326f1aff2f5f8a6e74e1ced984
- https://code.wireshark.org/review/gitweb?p=wireshark.git%3Ba=commit%3Bh=04c05a21e34cec326f1aff2f5f8a6e74e1ced984