--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2015-13946
2015-09-04 03:22:35.292132
--------------------------------------------------------------------------------

Name        : wireshark
Product     : Fedora 23
Version     : 1.12.7
Release     : 2.fc23
URL         : https://www.wireshark.org/
Summary     : Network traffic analyzer
Description :
Wireshark is a network traffic analyzer for Unix-ish operating systems.

This package lays base for libpcap, a packet capture and filtering
library, contains command-line utilities, contains plugins and
documentation for wireshark. A graphical user interface is packaged
separately to GTK+ package.

--------------------------------------------------------------------------------
Update Information:

    - Enable libnl3 (see rhbz#1207386, rhbz#1247566)     - Remove airpcap switch
(doesn't have any effect on Linux)     - Backport patch no. 11     - Fixed
building with F24+  * Ver. 1.12.7
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1253360 - CVE-2015-6248 wireshark: Ptvcursor crash (wnpa-sec-2015-28)
        https://bugzilla.redhat.com/show_bug.cgi?id=1253360
  [ 2 ] Bug #1253352 - CVE-2015-6241 wireshark: protocol tree crash (wnpa-sec-2015-21)
        https://bugzilla.redhat.com/show_bug.cgi?id=1253352
  [ 3 ] Bug #1253357 - CVE-2015-6246 wireshark: WaveAgent dissector crash (wnpa-sec-2015-26)
        https://bugzilla.redhat.com/show_bug.cgi?id=1253357
  [ 4 ] Bug #1253356 - CVE-2015-6245 wireshark: GSM RLC/MAC dissector infinite loop (wnpa-sec-2015-25)
        https://bugzilla.redhat.com/show_bug.cgi?id=1253356
  [ 5 ] Bug #1253354 - CVE-2015-6243 wireshark: Dissector table crash (wnpa-sec-2015-23)
        https://bugzilla.redhat.com/show_bug.cgi?id=1253354
  [ 6 ] Bug #1253353 - CVE-2015-6242 wireshark: memory manager crash (wnpa-sec-2015-22)
        https://bugzilla.redhat.com/show_bug.cgi?id=1253353
  [ 7 ] Bug #1253359 - CVE-2015-6247 wireshark: OpenFlow dissector infinite loop (wnpa-sec-2015-27)
        https://bugzilla.redhat.com/show_bug.cgi?id=1253359
  [ 8 ] Bug #1253355 - CVE-2015-6244 wireshark: ZigBee dissector crash (wnpa-sec-2015-24)
        https://bugzilla.redhat.com/show_bug.cgi?id=1253355
  [ 9 ] Bug #1253361 - CVE-2015-6249 wireshark: WCCP dissector crash (wnpa-sec-2015-29)
        https://bugzilla.redhat.com/show_bug.cgi?id=1253361
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program. Use
su -c 'yum update wireshark' at the command line.
For more information, refer to "Managing Software with yum",
available at .

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/security/
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/

Fedora 23: wireshark Security Update 2015-13946

September 4, 2015
- Enable libnl3 (see rhbz#1207386, rhbz#1247566) - Remove airpcap switch (doesn't have any effect on Linux) - Backport patch no

Summary

Wireshark is a network traffic analyzer for Unix-ish operating systems.

This package lays base for libpcap, a packet capture and filtering

library, contains command-line utilities, contains plugins and

documentation for wireshark. A graphical user interface is packaged

separately to GTK+ package.

Update Information:

- Enable libnl3 (see rhbz#1207386, rhbz#1247566) - Remove airpcap switch (doesn't have any effect on Linux) - Backport patch no. 11 - Fixed building with F24+ * Ver. 1.12.7

Change Log

References

[ 1 ] Bug #1253360 - CVE-2015-6248 wireshark: Ptvcursor crash (wnpa-sec-2015-28) https://bugzilla.redhat.com/show_bug.cgi?id=1253360 [ 2 ] Bug #1253352 - CVE-2015-6241 wireshark: protocol tree crash (wnpa-sec-2015-21) https://bugzilla.redhat.com/show_bug.cgi?id=1253352 [ 3 ] Bug #1253357 - CVE-2015-6246 wireshark: WaveAgent dissector crash (wnpa-sec-2015-26) https://bugzilla.redhat.com/show_bug.cgi?id=1253357 [ 4 ] Bug #1253356 - CVE-2015-6245 wireshark: GSM RLC/MAC dissector infinite loop (wnpa-sec-2015-25) https://bugzilla.redhat.com/show_bug.cgi?id=1253356 [ 5 ] Bug #1253354 - CVE-2015-6243 wireshark: Dissector table crash (wnpa-sec-2015-23) https://bugzilla.redhat.com/show_bug.cgi?id=1253354 [ 6 ] Bug #1253353 - CVE-2015-6242 wireshark: memory manager crash (wnpa-sec-2015-22) https://bugzilla.redhat.com/show_bug.cgi?id=1253353 [ 7 ] Bug #1253359 - CVE-2015-6247 wireshark: OpenFlow dissector infinite loop (wnpa-sec-2015-27) https://bugzilla.redhat.com/show_bug.cgi?id=1253359 [ 8 ] Bug #1253355 - CVE-2015-6244 wireshark: ZigBee dissector crash (wnpa-sec-2015-24) https://bugzilla.redhat.com/show_bug.cgi?id=1253355 [ 9 ] Bug #1253361 - CVE-2015-6249 wireshark: WCCP dissector crash (wnpa-sec-2015-29) https://bugzilla.redhat.com/show_bug.cgi?id=1253361

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update wireshark' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
Name : wireshark
Product : Fedora 23
Version : 1.12.7
Release : 2.fc23
URL : https://www.wireshark.org/
Summary : Network traffic analyzer

Related News