ALT-BU-2023-5962-1
Branch p9_e2k update bulletin.
Package pcsc-lite-ccid updated to version 1.5.2-alt1 for branch p9_e2k.
Closed bugs
картридер не видит смарт-карту
Closed bugs
Переименовать пункт меню
Closed vulnerabilities
BDU:2023-03347
Уязвимость диссектора RPCoRDMA анализатора трафика компьютерных сетей Wireshark, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2023-03609
Уязвимость диссектора LISP анализатора трафика компьютерных сетей Wireshark, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2023-05022
Уязвимость компонента CP2179 анализатора трафика компьютерных сетей Wireshark, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2023-05695
Уязвимость анализатора трафика компьютерных сетей Wireshark , связанная с несогласованным управлением памятью, , позволяющая нарушителю вызвать отказ в обслуживании
BDU:2023-05711
Уязвимость анализатора трафика компьютерных сетей Wireshark, связанная с выполнением цикла с недоступным условием выхода, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2023-05712
Уязвимость анализатора трафика компьютерных сетей Wireshark , связанная с ошибкой освобождения памяти, позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2022-3190
Infinite loop in the F5 Ethernet Trailer protocol dissector in Wireshark 3.6.0 to 3.6.7 and 3.4.0 to 3.4.15 allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-3190.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-3190.json
- https://gitlab.com/wireshark/wireshark/-/issues/18307
- https://gitlab.com/wireshark/wireshark/-/issues/18307
- FEDORA-2022-9d4aa8a486
- FEDORA-2022-9d4aa8a486
- FEDORA-2022-1f2fbb087e
- FEDORA-2022-1f2fbb087e
- https://www.wireshark.org/security/wnpa-sec-2022-06.html
- https://www.wireshark.org/security/wnpa-sec-2022-06.html
Modified: 2024-11-21
CVE-2022-3725
Crash in the OPUS protocol dissector in Wireshark 3.6.0 to 3.6.8 allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-3725.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-3725.json
- https://gitlab.com/wireshark/wireshark/-/issues/18378
- https://gitlab.com/wireshark/wireshark/-/issues/18378
- FEDORA-2022-cf9ae8e4ff
- FEDORA-2022-cf9ae8e4ff
- GLSA-202309-02
- GLSA-202309-02
- https://www.wireshark.org/security/wnpa-sec-2022-07.html
- https://www.wireshark.org/security/wnpa-sec-2022-07.html
Modified: 2024-11-21
CVE-2022-4344
Memory exhaustion in the Kafka protocol dissector in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-4344.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-4344.json
- FEDORA-2023-9ddb9b9757
- FEDORA-2023-9ddb9b9757
- FEDORA-2023-f9e2ad8b73
- FEDORA-2023-f9e2ad8b73
- https://www.wireshark.org/security/wnpa-sec-2022-10.html
- https://www.wireshark.org/security/wnpa-sec-2022-10.html
Modified: 2024-11-21
CVE-2022-4345
Infinite loops in the BPv6, OpenFlow, and Kafka protocol dissectors in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-4345.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-4345.json
- [debian-lts-announce] 20230208 [SECURITY] [DLA 3313-1] wireshark security update
- [debian-lts-announce] 20230208 [SECURITY] [DLA 3313-1] wireshark security update
- FEDORA-2023-9ddb9b9757
- FEDORA-2023-9ddb9b9757
- FEDORA-2023-f9e2ad8b73
- FEDORA-2023-f9e2ad8b73
- https://www.wireshark.org/security/wnpa-sec-2022-09.html
- https://www.wireshark.org/security/wnpa-sec-2022-09.html
Modified: 2025-04-01
CVE-2023-0411
Excessive loops in multiple dissectors in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0411.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0411.json
- https://gitlab.com/wireshark/wireshark/-/issues/18711
- https://gitlab.com/wireshark/wireshark/-/issues/18711
- https://gitlab.com/wireshark/wireshark/-/issues/18720
- https://gitlab.com/wireshark/wireshark/-/issues/18720
- https://gitlab.com/wireshark/wireshark/-/issues/18737
- https://gitlab.com/wireshark/wireshark/-/issues/18737
- [debian-lts-announce] 20230208 [SECURITY] [DLA 3313-1] wireshark security update
- [debian-lts-announce] 20230208 [SECURITY] [DLA 3313-1] wireshark security update
- https://www.wireshark.org/security/wnpa-sec-2023-06.html
- https://www.wireshark.org/security/wnpa-sec-2023-06.html
Modified: 2025-04-02
CVE-2023-0412
TIPC dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0412.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0412.json
- https://gitlab.com/wireshark/wireshark/-/issues/18770
- https://gitlab.com/wireshark/wireshark/-/issues/18770
- [debian-lts-announce] 20230208 [SECURITY] [DLA 3313-1] wireshark security update
- [debian-lts-announce] 20230208 [SECURITY] [DLA 3313-1] wireshark security update
- https://www.wireshark.org/security/wnpa-sec-2023-07.html
- https://www.wireshark.org/security/wnpa-sec-2023-07.html
Modified: 2025-04-02
CVE-2023-0413
Dissection engine bug in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0413.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0413.json
- https://gitlab.com/wireshark/wireshark/-/issues/18766
- https://gitlab.com/wireshark/wireshark/-/issues/18766
- [debian-lts-announce] 20230208 [SECURITY] [DLA 3313-1] wireshark security update
- [debian-lts-announce] 20230208 [SECURITY] [DLA 3313-1] wireshark security update
- https://www.wireshark.org/security/wnpa-sec-2023-03.html
- https://www.wireshark.org/security/wnpa-sec-2023-03.html
Modified: 2025-04-02
CVE-2023-0415
iSCSI dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0415.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0415.json
- https://gitlab.com/wireshark/wireshark/-/issues/18796
- https://gitlab.com/wireshark/wireshark/-/issues/18796
- [debian-lts-announce] 20230208 [SECURITY] [DLA 3313-1] wireshark security update
- [debian-lts-announce] 20230208 [SECURITY] [DLA 3313-1] wireshark security update
- https://www.wireshark.org/security/wnpa-sec-2023-05.html
- https://www.wireshark.org/security/wnpa-sec-2023-05.html
Modified: 2025-04-01
CVE-2023-0416
GNW dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0416.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0416.json
- https://gitlab.com/wireshark/wireshark/-/issues/18779
- https://gitlab.com/wireshark/wireshark/-/issues/18779
- https://www.wireshark.org/security/wnpa-sec-2023-04.html
- https://www.wireshark.org/security/wnpa-sec-2023-04.html
Modified: 2025-03-31
CVE-2023-0417
Memory leak in the NFS dissector in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0417.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0417.json
- https://gitlab.com/wireshark/wireshark/-/issues/18628
- https://gitlab.com/wireshark/wireshark/-/issues/18628
- [debian-lts-announce] 20230208 [SECURITY] [DLA 3313-1] wireshark security update
- [debian-lts-announce] 20230208 [SECURITY] [DLA 3313-1] wireshark security update
- https://www.wireshark.org/security/wnpa-sec-2023-02.html
- https://www.wireshark.org/security/wnpa-sec-2023-02.html
Modified: 2025-01-07
CVE-2023-0666
Due to failure in validating the length provided by an attacker-crafted RTPS packet, Wireshark version 4.0.5 and prior, by default, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark.
- https://gitlab.com/wireshark/wireshark/-/issues/19085
- https://gitlab.com/wireshark/wireshark/-/issues/19085
- https://security.gentoo.org/glsa/202309-02
- https://security.gentoo.org/glsa/202309-02
- https://takeonme.org/cves/CVE-2023-0666.html
- https://takeonme.org/cves/CVE-2023-0666.html
- https://www.debian.org/security/2023/dsa-5429
- https://www.debian.org/security/2023/dsa-5429
- https://www.wireshark.org/docs/relnotes/wireshark-4.0.6.html
- https://www.wireshark.org/docs/relnotes/wireshark-4.0.6.html
- https://www.wireshark.org/security/wnpa-sec-2023-18.html
- https://www.wireshark.org/security/wnpa-sec-2023-18.html
Modified: 2025-01-07
CVE-2023-0667
Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark version 4.0.5 and prior, in an unusual configuration, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark
Modified: 2025-01-07
CVE-2023-0668
Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and prior, by default, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark.
- https://gitlab.com/wireshark/wireshark/-/issues/19087
- https://gitlab.com/wireshark/wireshark/-/issues/19087
- https://security.gentoo.org/glsa/202309-02
- https://security.gentoo.org/glsa/202309-02
- https://takeonme.org/cves/CVE-2023-0668.html
- https://takeonme.org/cves/CVE-2023-0668.html
- https://www.debian.org/security/2023/dsa-5429
- https://www.debian.org/security/2023/dsa-5429
- https://www.wireshark.org/docs/relnotes/wireshark-4.0.6.html
- https://www.wireshark.org/docs/relnotes/wireshark-4.0.6.html
- https://www.wireshark.org/security/wnpa-sec-2023-19.html
- https://www.wireshark.org/security/wnpa-sec-2023-19.html
Modified: 2025-03-06
CVE-2023-1161
ISO 15765 and ISO 10681 dissector crash in Wireshark 4.0.0 to 4.0.3 and 3.6.0 to 3.6.11 allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-1161.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-1161.json
- https://gitlab.com/wireshark/wireshark/-/issues/18839
- https://gitlab.com/wireshark/wireshark/-/issues/18839
- [debian-lts-announce] 20230429 [SECURITY] [DLA 3402-1] wireshark security update
- [debian-lts-announce] 20230429 [SECURITY] [DLA 3402-1] wireshark security update
- GLSA-202309-02
- GLSA-202309-02
- DSA-5429
- DSA-5429
- https://www.wireshark.org/security/wnpa-sec-2023-08.html
- https://www.wireshark.org/security/wnpa-sec-2023-08.html
Modified: 2025-02-07
CVE-2023-1992
RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-1992.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-1992.json
- https://gitlab.com/wireshark/wireshark/-/issues/18852
- https://gitlab.com/wireshark/wireshark/-/issues/18852
- [debian-lts-announce] 20230429 [SECURITY] [DLA 3402-1] wireshark security update
- [debian-lts-announce] 20230429 [SECURITY] [DLA 3402-1] wireshark security update
- FEDORA-2023-f70fbf64cb
- FEDORA-2023-f70fbf64cb
- FEDORA-2023-7af3ad9ffe
- FEDORA-2023-7af3ad9ffe
- FEDORA-2023-203eff67e0
- FEDORA-2023-203eff67e0
- GLSA-202309-02
- GLSA-202309-02
- DSA-5429
- DSA-5429
- https://www.wireshark.org/security/wnpa-sec-2023-09.html
- https://www.wireshark.org/security/wnpa-sec-2023-09.html
Modified: 2025-02-07
CVE-2023-1993
LISP dissector large loop in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-1993.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-1993.json
- https://gitlab.com/wireshark/wireshark/-/issues/18900
- https://gitlab.com/wireshark/wireshark/-/issues/18900
- [debian-lts-announce] 20230429 [SECURITY] [DLA 3402-1] wireshark security update
- [debian-lts-announce] 20230429 [SECURITY] [DLA 3402-1] wireshark security update
- FEDORA-2023-f70fbf64cb
- FEDORA-2023-f70fbf64cb
- FEDORA-2023-7af3ad9ffe
- FEDORA-2023-7af3ad9ffe
- FEDORA-2023-203eff67e0
- FEDORA-2023-203eff67e0
- GLSA-202309-02
- GLSA-202309-02
- DSA-5429
- DSA-5429
- https://www.wireshark.org/security/wnpa-sec-2023-10.html
- https://www.wireshark.org/security/wnpa-sec-2023-10.html
Modified: 2025-02-07
CVE-2023-1994
GQUIC dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-1994.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-1994.json
- https://gitlab.com/wireshark/wireshark/-/issues/18947
- https://gitlab.com/wireshark/wireshark/-/issues/18947
- [debian-lts-announce] 20230429 [SECURITY] [DLA 3402-1] wireshark security update
- [debian-lts-announce] 20230429 [SECURITY] [DLA 3402-1] wireshark security update
- FEDORA-2023-f70fbf64cb
- FEDORA-2023-f70fbf64cb
- FEDORA-2023-7af3ad9ffe
- FEDORA-2023-7af3ad9ffe
- FEDORA-2023-203eff67e0
- FEDORA-2023-203eff67e0
- GLSA-202309-02
- GLSA-202309-02
- DSA-5429
- DSA-5429
- https://www.wireshark.org/security/wnpa-sec-2023-11.html
- https://www.wireshark.org/security/wnpa-sec-2023-11.html
Modified: 2025-01-15
CVE-2023-2854
BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2854.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2854.json
- https://gitlab.com/wireshark/wireshark/-/issues/19084
- https://gitlab.com/wireshark/wireshark/-/issues/19084
- GLSA-202309-02
- GLSA-202309-02
- DSA-5429
- DSA-5429
- https://www.wireshark.org/security/wnpa-sec-2023-17.html
- https://www.wireshark.org/security/wnpa-sec-2023-17.html
Modified: 2025-01-15
CVE-2023-2855
Candump log parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2855.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2855.json
- https://gitlab.com/wireshark/wireshark/-/issues/19062
- https://gitlab.com/wireshark/wireshark/-/issues/19062
- GLSA-202309-02
- GLSA-202309-02
- DSA-5429
- DSA-5429
- https://www.wireshark.org/security/wnpa-sec-2023-12.html
- https://www.wireshark.org/security/wnpa-sec-2023-12.html
Modified: 2025-01-15
CVE-2023-2856
VMS TCPIPtrace file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2856.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2856.json
- https://gitlab.com/wireshark/wireshark/-/issues/19083
- https://gitlab.com/wireshark/wireshark/-/issues/19083
- [debian-lts-announce] 20230603 [SECURITY] [DLA 3443-1] wireshark security update
- [debian-lts-announce] 20230603 [SECURITY] [DLA 3443-1] wireshark security update
- GLSA-202309-02
- GLSA-202309-02
- DSA-5429
- DSA-5429
- https://www.wireshark.org/security/wnpa-sec-2023-16.html
- https://www.wireshark.org/security/wnpa-sec-2023-16.html
Modified: 2025-01-15
CVE-2023-2857
BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2857.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2857.json
- https://gitlab.com/wireshark/wireshark/-/issues/19063
- https://gitlab.com/wireshark/wireshark/-/issues/19063
- GLSA-202309-02
- GLSA-202309-02
- DSA-5429
- DSA-5429
- https://www.wireshark.org/security/wnpa-sec-2023-13.html
- https://www.wireshark.org/security/wnpa-sec-2023-13.html
Modified: 2025-01-15
CVE-2023-2858
NetScaler file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2858.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2858.json
- https://gitlab.com/wireshark/wireshark/-/issues/19081
- https://gitlab.com/wireshark/wireshark/-/issues/19081
- [debian-lts-announce] 20230603 [SECURITY] [DLA 3443-1] wireshark security update
- [debian-lts-announce] 20230603 [SECURITY] [DLA 3443-1] wireshark security update
- GLSA-202309-02
- GLSA-202309-02
- DSA-5429
- DSA-5429
- https://www.wireshark.org/security/wnpa-sec-2023-15.html
- https://www.wireshark.org/security/wnpa-sec-2023-15.html
Modified: 2025-01-16
CVE-2023-2879
GDSDB infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2879.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2879.json
- https://gitlab.com/wireshark/wireshark/-/issues/19068
- https://gitlab.com/wireshark/wireshark/-/issues/19068
- [debian-lts-announce] 20230603 [SECURITY] [DLA 3443-1] wireshark security update
- [debian-lts-announce] 20230603 [SECURITY] [DLA 3443-1] wireshark security update
- GLSA-202309-02
- GLSA-202309-02
- DSA-5429
- DSA-5429
- https://www.wireshark.org/security/wnpa-sec-2023-14.html
- https://www.wireshark.org/security/wnpa-sec-2023-14.html
Modified: 2025-02-13
CVE-2023-2906
Due to a failure in validating the length provided by an attacker-crafted CP2179 packet, Wireshark versions 2.0.0 through 4.0.7 is susceptible to a divide by zero allowing for a denial of service attack.
- https://gitlab.com/wireshark/wireshark/-/issues/19229
- https://gitlab.com/wireshark/wireshark/-/issues/19229
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6HCUPLDY7HLPO46PHMGIJSUBJFTT237C/
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6HCUPLDY7HLPO46PHMGIJSUBJFTT237C/
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/L4AVRUYSHDNEAJILVSGY5W6MPOMG2YRF/
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/L4AVRUYSHDNEAJILVSGY5W6MPOMG2YRF/
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TRKHFQPWFU7F3OXTL6IEIQSJG6FVXZTZ/
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TRKHFQPWFU7F3OXTL6IEIQSJG6FVXZTZ/
- https://takeonme.org/cves/CVE-2023-2906.html
- https://takeonme.org/cves/CVE-2023-2906.html
Modified: 2025-01-13
CVE-2023-2952
XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted capture file
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2952.json
- https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-2952.json
- https://gitlab.com/wireshark/wireshark/-/issues/19100
- https://gitlab.com/wireshark/wireshark/-/issues/19100
- [debian-lts-announce] 20230603 [SECURITY] [DLA 3443-1] wireshark security update
- [debian-lts-announce] 20230603 [SECURITY] [DLA 3443-1] wireshark security update
- GLSA-202309-02
- GLSA-202309-02
- DSA-5429
- DSA-5429
- https://www.wireshark.org/security/wnpa-sec-2023-20.html
- https://www.wireshark.org/security/wnpa-sec-2023-20.html
Modified: 2024-11-21
CVE-2023-3648
Kafka dissector crash in Wireshark 4.0.0 to 4.0.6 and 3.6.0 to 3.6.14 allows denial of service via packet injection or crafted capture file
Modified: 2024-11-21
CVE-2023-4511
BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file
- GitLab Issue #19258
- GitLab Issue #19258
- https://lists.debian.org/debian-lts-announce/2024/02/msg00016.html
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6HCUPLDY7HLPO46PHMGIJSUBJFTT237C/
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/L4AVRUYSHDNEAJILVSGY5W6MPOMG2YRF/
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TRKHFQPWFU7F3OXTL6IEIQSJG6FVXZTZ/
- https://www.wireshark.org/security/wnpa-sec-2023-24.html
- https://www.wireshark.org/security/wnpa-sec-2023-24.html
Modified: 2024-11-21
CVE-2023-4513
BT SDP dissector memory leak in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injection or crafted capture file
- GitLab Issue #19259
- GitLab Issue #19259
- https://lists.debian.org/debian-lts-announce/2024/02/msg00016.html
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6HCUPLDY7HLPO46PHMGIJSUBJFTT237C/
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/L4AVRUYSHDNEAJILVSGY5W6MPOMG2YRF/
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TRKHFQPWFU7F3OXTL6IEIQSJG6FVXZTZ/
- https://www.wireshark.org/security/wnpa-sec-2023-25.html
- https://www.wireshark.org/security/wnpa-sec-2023-25.html