MGASA-2018-0370 - Updated wireshark packages fix security vulnerabilities

Publication date: 07 Sep 2018
URL: https://advisories.mageia.org/MGASA-2018-0370.html
Type: security
Affected Mageia releases: 6
CVE: CVE-2018-16056,
     CVE-2018-16057,
     CVE-2018-16058

Updated wireshark packages fix security vulnerabilities:

Bluetooth Attribute Protocol dissector crash (CVE-2018-16056).

Radiotap dissector crash (CVE-2018-16057).

Bluetooth AVDTP dissector crash (CVE-2018-16058).

References:
- https://bugs.mageia.org/show_bug.cgi?id=23508
- https://www.wireshark.org/security/wnpa-sec-2018-44.html
- https://www.wireshark.org/security/wnpa-sec-2018-45.html
- https://www.wireshark.org/security/wnpa-sec-2018-46.html
- https://www.wireshark.org/docs/relnotes/wireshark-2.2.17.html
- https://www.wireshark.org/news/20180829.html
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16056
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16057
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16058

SRPMS:
- 6/core/wireshark-2.2.17-1.mga6

Mageia 2018-0370: wireshark security update

Updated wireshark packages fix security vulnerabilities: Bluetooth Attribute Protocol dissector crash (CVE-2018-16056)

Summary

Updated wireshark packages fix security vulnerabilities:
Bluetooth Attribute Protocol dissector crash (CVE-2018-16056).
Radiotap dissector crash (CVE-2018-16057).
Bluetooth AVDTP dissector crash (CVE-2018-16058).

References

- https://bugs.mageia.org/show_bug.cgi?id=23508

- https://www.wireshark.org/security/wnpa-sec-2018-44.html

- https://www.wireshark.org/security/wnpa-sec-2018-45.html

- https://www.wireshark.org/security/wnpa-sec-2018-46.html

- https://www.wireshark.org/docs/relnotes/wireshark-2.2.17.html

- https://www.wireshark.org/news/20180829.html

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16056

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16057

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16058

Resolution

MGASA-2018-0370 - Updated wireshark packages fix security vulnerabilities

SRPMS

- 6/core/wireshark-2.2.17-1.mga6

Severity
Publication date: 07 Sep 2018
URL: https://advisories.mageia.org/MGASA-2018-0370.html
Type: security
CVE: CVE-2018-16056, CVE-2018-16057, CVE-2018-16058

Related News