Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Mageia 8: 2021-0518 Moderate: Wireshark Dissector Threats

mageia
Calendar Grey November 20, 2021
Dist Mageia Esm H88
Mageia 2021-1019 resolves various crashes and infinite loops within Wireshark dissectors, delivering essential security patches for its user base.
IPPUSB dissector crash (CVE-2021-39920)

Summary

IPPUSB dissector crash (CVE-2021-39920). Modbus dissector crash (CVE-2021-39921). C12.22 dissector crash (CVE-2021-39922). PNRP dissector large loop (wnpa-sec-2021-11). Bluetooth DHT dissector large loop (CVE-2021-39924). Bluetooth SDP dissector crash (CVE-2021-39925). Bluetooth HCI_ISO dissector crash (CVE-2021-39926). IEEE 802.11 dissector crash (CVE-2021-39928). Bluetooth DHT dissector crash (CVE-2021-39929).

References

- https://bugs.mageia.org/show_bug.cgi?id=29670

- https://www.wireshark.org/security/wnpa-sec-2021-07

- https://www.wireshark.org/security/wnpa-sec-2021-08

- https://www.wireshark.org/security/wnpa-sec-2021-09

- https://www.wireshark.org/security/wnpa-sec-2021-10

- https://www.wireshark.org/security/wnpa-sec-2021-11

- https://www.wireshark.org/security/wnpa-sec-2021-12

- https://www.wireshark.org/security/wnpa-sec-2021-13

- https://www.wireshark.org/security/wnpa-sec-2021-14

- https://www.wireshark.org/security/wnpa-sec-2021-15

- https://www.wireshark.org/docs/relnotes/wireshark-3.4.8.html

- https://www.wireshark.org/docs/relnotes/wireshark-3.4.9.html

- https://www.wireshark.org/docs/relnotes/wireshark-3.4.10.html

- https://www.wireshark.org/news/20210825.html

- https://www.wireshark.org/news/20211006.html

- https://www.wireshark.org/news/20211117.html

- https://www.cve.org/CVERecord?id=CVE-2021-39920

- https://www.cve.org/CVERecord?id=CVE-2021-39921

- https://www.cve.org/CVERecord?id=CVE-2021-39922

- https://www.cve.org/CVERecord?id=CVE-2021-39924

- https://www.cve.org/CVERecord?id=CVE-2021-39925

- https://www.cve.org/CVERecord?id=CVE-2021-39926

- https://www.cve.org/CVERecord?id=CVE-2021-39928

- https://www.cve.org/CVERecord?id=CVE-2021-39929

Resolution

SRPMS

- 8/core/wireshark-3.4.10-1.mga8

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 20 Nov 2021
URL: https://advisories.mageia.org/MGASA-2021-0518.html
Type: security
CVE: CVE-2021-39920, CVE-2021-39921, CVE-2021-39922, CVE-2021-39924, CVE-2021-39925, CVE-2021-39926, CVE-2021-39928, CVE-2021-39929

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here