Login
Newsletter
Werbung

Sicherheit: Zwei Probleme in wireshark
Aktuelle Meldungen Distributionen
Name: Zwei Probleme in wireshark
ID: FEDORA-2024-4115ab9959
Distribution: Fedora
Plattformen: Fedora 40
Datum: Sa, 23. März 2024, 07:19
Referenzen: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-24479
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-24476
https://bugzilla.redhat.com/show_bug.cgi?id=2264271
Applikationen: Wireshark

Originalnachricht

-------------------------------------------------------------------------------
-
Fedora Update Notification
FEDORA-2024-4115ab9959
2024-03-23 00:20:56.398579
-------------------------------------------------------------------------------
-

Name : wireshark
Product : Fedora 40
Version : 4.2.3
Release : 1.fc40
URL : http://www.wireshark.org/
Summary : Network traffic analyzer
Description :
Wireshark allows you to examine protocol data stored in files or as it is
captured from wired or wireless (WiFi or Bluetooth) networks, USB devices,
and many other sources. It supports dozens of protocol capture file formats
and understands more than a thousand protocols.

It has many powerful features including a rich display filter language
and the ability to reassemble multiple protocol packets in order to, for
example, view a complete TCP stream, save the contents of a file which was
transferred over HTTP or CIFS, or play back an RTP audio stream.

-------------------------------------------------------------------------------
-
Update Information:

New version 4.2.3
-------------------------------------------------------------------------------
-
ChangeLog:

* Tue Mar 5 2024 Michal Ruprich <mruprich@redhat.com> - 1:4.2.3-1
- New version 4.2.3
-------------------------------------------------------------------------------
-
References:

[ 1 ] Bug #2264271 - wireshark-4.2.3 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2264271
[ 2 ] Bug #2265434 - CVE-2024-24479 wireshark: Buffer Overflow via
wsutil/to_str.c and format_fractional_part_nsecs results in Denial of Service [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2265434
[ 3 ] Bug #2265437 - CVE-2024-24476 wireshark: Buffer Overflow via
pan/addr_resolv.c and ws_manuf_lookup_str() results in Denial of Service [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2265437
-------------------------------------------------------------------------------
-

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2024-4115ab9959' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
-------------------------------------------------------------------------------
-
--
_______________________________________________
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org
Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung