Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.831413
Categoría:Mandrake Local Security Checks
Título:Mandriva Update for wireshark MDVSA-2011:105 (wireshark)
Resumen:The remote host is missing an update for the 'wireshark'; package(s) announced via the referenced advisory.
Descripción:Summary:
The remote host is missing an update for the 'wireshark'
package(s) announced via the referenced advisory.

Vulnerability Insight:
This advisory updates wireshark to the latest version (1.2.17),
fixing several security issues:

* Large/infinite loop in the DICOM dissector. (Bug 5876) Versions
affected: 1.2.0 to 1.2.16 and 1.4.0 to 1.4.6.

* Huzaifa Sidhpurwala of the Red Hat Security Response Team
discovered that a corrupted Diameter dictionary file could crash
Wireshark. Versions affected: 1.2.0 to 1.2.16 and 1.4.0 to 1.4.6.

* Huzaifa Sidhpurwala of the Red Hat Security Response Team discovered
that a corrupted snoop file could crash Wireshark. (Bug 5912) Versions
affected: 1.2.0 to 1.2.16 and 1.4.0 to 1.4.6.

* David Maciejak of Fortinet's FortiGuard Labs discovered that
malformed compressed capture data could crash Wireshark. (Bug 5908)
Versions affected: 1.2.0 to 1.2.16 and 1.4.0 to 1.4.6.

* Huzaifa Sidhpurwala of the Red Hat Security Response Team discovered
that a corrupted Visual Networks file could crash Wireshark. (Bug 5934)
Versions affected: 1.2.0 to 1.2.16 and 1.4.0 to 1.4.6.

Affected Software/OS:
wireshark on Mandriva Linux 2010.1,
Mandriva Linux 2010.1/X86_64,
Mandriva Enterprise Server 5,
Mandriva Enterprise Server 5/X86_64

Solution:
Please Install the Updated Packages.

CVSS Score:
4.3

CVSS Vector:
AV:N/AC:M/Au:N/C:N/I:N/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2011-1957
44449
http://secunia.com/advisories/44449
44958
http://secunia.com/advisories/44958
45149
http://secunia.com/advisories/45149
48066
http://www.securityfocus.com/bid/48066
48947
http://secunia.com/advisories/48947
DSA-2274
http://www.debian.org/security/2011/dsa-2274
FEDORA-2011-7821
http://lists.fedoraproject.org/pipermail/package-announce/2011-June/061290.html
FEDORA-2011-7846
http://lists.fedoraproject.org/pipermail/package-announce/2011-June/061437.html
FEDORA-2011-7858
http://lists.fedoraproject.org/pipermail/package-announce/2011-June/061477.html
[oss-security] 20110531 CVE request for Wireshark 1.4.6/1.2.16 Multiple DoS issues
http://openwall.com/lists/oss-security/2011/05/31/20
[oss-security] 20110601 Re: CVE request for Wireshark 1.4.6/1.2.16 Multiple DoS issues
http://openwall.com/lists/oss-security/2011/06/01/1
http://openwall.com/lists/oss-security/2011/06/01/11
http://anonsvn.wireshark.org/viewvc?view=revision&revision=36958
http://www.wireshark.org/security/wnpa-sec-2011-07.html
http://www.wireshark.org/security/wnpa-sec-2011-08.html
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5876
https://bugzilla.redhat.com/show_bug.cgi?id=710021
oval:org.mitre.oval:def:14325
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14325
wireshark-dicom-dos(67790)
https://exchange.xforce.ibmcloud.com/vulnerabilities/67790
Common Vulnerability Exposure (CVE) ID: CVE-2011-1958
RHSA-2013:0125
http://rhn.redhat.com/errata/RHSA-2013-0125.html
https://bugzilla.redhat.com/show_bug.cgi?id=710184
oval:org.mitre.oval:def:15045
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15045
wireshark-diameter-dos(67791)
https://exchange.xforce.ibmcloud.com/vulnerabilities/67791
Common Vulnerability Exposure (CVE) ID: CVE-2011-1959
http://anonsvn.wireshark.org/viewvc?view=revision&revision=37068
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5912
https://bugzilla.redhat.com/show_bug.cgi?id=710039
oval:org.mitre.oval:def:14656
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14656
wireshark-snoop-dos(67792)
https://exchange.xforce.ibmcloud.com/vulnerabilities/67792
Common Vulnerability Exposure (CVE) ID: CVE-2011-2174
http://anonsvn.wireshark.org/viewvc?view=revision&revision=37081
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5908
https://bugzilla.redhat.com/show_bug.cgi?id=710097
oval:org.mitre.oval:def:14777
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14777
wireshark-compressed-packet-dos(67793)
https://exchange.xforce.ibmcloud.com/vulnerabilities/67793
Common Vulnerability Exposure (CVE) ID: CVE-2011-2175
http://anonsvn.wireshark.org/viewvc?view=revision&revision=37128
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5934
https://bugzilla.redhat.com/show_bug.cgi?id=710109
oval:org.mitre.oval:def:14645
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14645
CopyrightCopyright (C) 2011 Greenbone AG

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.