Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

SUSE: 2019:2674-1 Important: Tcpdump Security Update for Multiple Issues

suse
Calendar Grey October 15, 2019
Dist Suse Esm H88
A critical update for Wireshark has been released, tackling several vulnerabilities. Apply this update promptly to safeguard your network.
An update that fixes 28 vulnerabilities is now available

Summary

This update for tcpdump fixes the following issues: - CVE-2017-16808: Fixed a heap-based buffer over-read related to aoe_print and lookup_emem (bsc#1068716 bsc#1153098). - CVE-2018-10103: Fixed a mishandling of the printing of SMB data (bsc#1153098). - CVE-2018-10105: Fixed a mishandling of the printing of SMB data (bsc#1153098). - CVE-2018-14461: Fixed a buffer over-read in print-ldp.c:ldp_tlv_print (bsc#1153098). - CVE-2018-14462: Fixed a buffer over-read in print-icmp.c:icmp_print (bsc#1153098). - CVE-2018-14463: Fixed a buffer over-read in print-vrrp.c:vrrp_print (bsc#1153098). - CVE-2018-14464: Fixed a buffer over-read in print-lmp.c:lmp_print_data_link_subobjs (bsc#1153098). - CVE-2018-14465: Fixed a buffer over-read in print-rsvp.c:rsvp_obj_print (bsc#1153098).

References

#1068716 #1153098 #1153332

Cross- CVE-2017-16808 CVE-2018-10103 CVE-2018-10105

CVE-2018-14461 CVE-2018-14462 CVE-2018-14463

CVE-2018-14464 CVE-2018-14465 CVE-2018-14466

CVE-2018-14467 CVE-2018-14468 CVE-2018-14469

CVE-2018-14470 CVE-2018-14879 CVE-2018-14880

CVE-2018-14881 CVE-2018-14882 CVE-2018-16227

CVE-2018-16228 CVE-2018-16229 CVE-2018-16230

CVE-2018-16300 CVE-2018-16301 CVE-2018-16451

CVE-2018-16452 CVE-2019-1010220 CVE-2019-15166

CVE-2019-15167

Affected Products:

SUSE Linux Enterprise Module for Basesystem 15-SP1

SUSE Linux Enterprise Module for Basesystem 15

https://www.suse.com/security/cve/CVE-2017-16808.html

https://www.suse.com/security/cve/CVE-2018-10103.html

https://www.suse.com/security/cve/CVE-2018-10105.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2019:2674-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here