New version 3.6.0 Security fix for CVE-2021-39920, CVE-2021-39921, CVE-2021-39922, CVE-2021-39923, CVE-2021-39924, CVE-2021-39925, CVE-2021-39926, CVE-2021-39928, CVE-2021-39929. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-3747cf6107 2021-12-03 01:14:22.474817 --------------------------------------------------------------------------------Name : wireshark Product : Fedora 35 Version : 3.6.0 Release : 1.fc35 URL : https://www.wireshark.org/ Summary : Network traffic analyzer Description : Wireshark allows you to examine protocol data stored in files or as it is captured from wired or wireless (WiFi or Bluetooth) networks, USB devices, and many other sources. It supports dozens of protocol capture file formats and understands more than a thousand protocols. It has many powerful features including a rich display filter language and the ability to reassemble multiple protocol packets in order to, for example, view a complete TCP stream, save the contents of a file which was transferred over HTTP or CIFS, or play back an RTP audio stream. --------------------------------------------------------------------------------Update Information: New version 3.6.0 Security fix for CVE-2021-39920, CVE-2021-39921, CVE-2021-39922, CVE-2021-39923, CVE-2021-39924, CVE-2021-39925, CVE-2021-39926, CVE-2021-39928, CVE-2021-39929 --------------------------------------------------------------------------------ChangeLog: * Thu Nov 25 2021 Michal Ruprich - 1:3.6.0-0 - New version 3.6.0 - Fix for CVE-2021-39920, CVE-2021-39921, CVE-2021-39922, CVE-2021-39923, CVE-2021-39924, CVE-2021-39925, CVE-2021-39926, CVE-2021-39928, CVE-2021-39929 --------------------------------------------------------------------------------References: [ 1 ] Bug #2025653 - CVE-2021-39920 CVE-2021-39923 wireshark: IPPUSB dissector crash https://bugzilla.redhat.com/show_bug.cgi?id=2025653 [ 2 ] Bug #2025662- CVE-2021-39921 wireshark: modbus dissector crash https://bugzilla.redhat.com/show_bug.cgi?id=2025662 [ 3 ] Bug #2025665 - CVE-2021-39922 wireshark: C12.22 dissector crash https://bugzilla.redhat.com/show_bug.cgi?id=2025665 [ 4 ] Bug #2025668 - CVE-2021-39924 wireshark: bluetooth DHT dissector large loop https://bugzilla.redhat.com/show_bug.cgi?id=2025668 [ 5 ] Bug #2025670 - CVE-2021-39925 wireshark: bluetooth SDP dissector crash https://bugzilla.redhat.com/show_bug.cgi?id=2025670 [ 6 ] Bug #2025672 - CVE-2021-39926 wireshark: bluetooth HCI_ISO dissector crash https://bugzilla.redhat.com/show_bug.cgi?id=2025672 [ 7 ] Bug #2025675 - CVE-2021-39928 wireshark: IEEE 802.11 dissector crash https://bugzilla.redhat.com/show_bug.cgi?id=2025675 [ 8 ] Bug #2025678 - CVE-2021-39929 wireshark: bluetooth DHT dissector crash https://bugzilla.redhat.com/show_bug.cgi?id=2025678 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-3747cf6107' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
3.2.3 ---- New version 3.2.2 Security fix for CVE-2020-7044, CVE-2020-9428, CVE-2020-9430, CVE-2020-9431. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-ef943221ca 2020-04-25 02:14:03.396974 --------------------------------------------------------------------------------Name : wireshark Product : Fedora 32 Version : 3.2.3 Release : 1.fc32 URL : https://www.wireshark.org/ Summary : Network traffic analyzer Description : Wireshark allows you to examine protocol data stored in files or as it is captured from wired or wireless (WiFi or Bluetooth) networks, USB devices, and many other sources. It supports dozens of protocol capture file formats and understands more than a thousand protocols. It has many powerful features including a rich display filter language and the ability to reassemble multiple protocol packets in order to, for example, view a complete TCP stream, save the contents of a file which was transferred over HTTP or CIFS, or play back an RTP audio stream. --------------------------------------------------------------------------------Update Information: 3.2.3 ---- New version 3.2.2 Security fix for CVE-2020-7044, CVE-2020-9428, CVE-2020-9430, CVE-2020-9431 --------------------------------------------------------------------------------ChangeLog: * Mon Apr 13 2020 Gwyn Ciesla - 1:3.2.3-1 - 3.2.3 * Fri Apr 3 2020 Michal Ruprich - 1:3.2.2-1 - New version 3.2.2 --------------------------------------------------------------------------------References: [ 1 ] Bug #1796459 - CVE-2020-7044 wireshark: WASSP dissector crash (wnpa-sec-2020-01) https://bugzilla.redhat.com/show_bug.cgi?id=1796459 [ 2 ] Bug #1814586 - CVE-2020-9431 wireshark: LTE RRC dissector memory leak could result in excessive memory resource consumption https://bugzilla.redhat.com/show_bug.cgi?id=1814586 [ 3 ] Bug #1814615 - CVE-2020-9430 wireshark: injecting a malformedpacket may cause WiMax DLMAP dissector to crash due to out-of-bound read https://bugzilla.redhat.com/show_bug.cgi?id=1814615 [ 4 ] Bug #1814622 - CVE-2020-9428 wireshark: injecting a malformed packet may cause the EAP dissector to crash due to out-of-bounds read https://bugzilla.redhat.com/show_bug.cgi?id=1814622 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-ef943221ca' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Updated package.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-299 2005-04-05 ---------------------------------------------------------------------Product : Fedora Core 3 Name : gaim Version : 1.2.1 Release : 1.fc3 Summary : A Gtk+ based multiprotocol instant messaging client Description : Gaim allows you to talk to anyone using a variety of messaging protocols, including AIM (Oscar and TOC), ICQ, IRC, Yahoo!, MSN Messenger, Jabber, Gadu-Gadu, Napster, and Zephyr. These protocols are implemented using a modular, easy to use design. To use a protocol, just add an account using the account editor. Gaim supports many common features of other clients, as well as many unique features, such as perl scripting and C plugins. Gaim is NOT affiliated with or endorsed by America Online, Inc., Microsoft Corporation, or Yahoo! Inc. or other messaging service providers. ---------------------------------------------------------------------Update Information: gaim-1.2.1 resolves CAN-2005-0965 and CAN-2005-0966 as well as some crashes in the jabber and yahoo protocols. Read upstream's pages above for more details. ---------------------------------------------------------------------* Sun Apr 3 2005 Warren Togami 1:1.2.1-1 - update to 1.2.1 (minor bug fixes) * Fri Mar 18 2005 Warren Togami 1:1.2.0-1 - update to 1.2.0 (minor bug fixes) * Mon Mar 7 2005 Warren Togami 1:1.1.4-5 - Copy before modifying prefs.xml ---------------------------------------------------------------------This update can be downloaded from: 1190ddc5e1511eb8b0de6b29db2b8425 SRPMS/gaim-1.2.1-1.fc3.src.rpm 19ea5f0fd2e4b3ba6a473ade59eb3605 x86_64/gaim-1.2.1-1.fc3.x86_64.rpm bfbf6e99151d09b2966184330bf9f7af x86_64/debug/gaim-debuginfo-1.2.1-1.fc3.x86_64.rpm f3b77bfd973fd80cd1afce537fc96cda i386/gaim-1.2.1-1.fc3.i386.rpm 3c9c1a69d3ed0e4ae2e287ab1163e119 i386/debug/gaim-debuginfo-1.2.1-1.fc3.i386.rpm Thisupdate can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list
Get the latest Linux and open source security news straight to your inbox.