Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2018:0054-1

Опубликовано: 09 янв. 2018
Источник: suse-cvrf

Описание

Security update for wireshark

This update for wireshark to version 2.2.11 fixes several issues.

These security issues were fixed:

  • CVE-2017-13767: The MSDP dissector could have gone into an infinite loop. This was addressed by adding length validation (bsc#1056248)
  • CVE-2017-13766: The Profinet I/O dissector could have crash with an out-of-bounds write. This was addressed by adding string validation (bsc#1056249)
  • CVE-2017-13765: The IrCOMM dissector had a buffer over-read and application crash. This was addressed by adding length validation (bsc#1056251)
  • CVE-2017-9766: PROFINET IO data with a high recursion depth allowed remote attackers to cause a denial of service (stack exhaustion) in the dissect_IODWriteReq function (bsc#1045341)
  • CVE-2017-9617: Deeply nested DAAP data may have cause stack exhaustion (uncontrolled recursion) in the dissect_daap_one_tag function in the DAAP dissector (bsc#1044417)
  • CVE-2017-15192: The BT ATT dissector could crash. This was addressed in epan/dissectors/packet-btatt.c by considering a case where not all of the BTATT packets have the same encapsulation level. (bsc#1062645)
  • CVE-2017-15193: The MBIM dissector could crash or exhaust system memory. This was addressed in epan/dissectors/packet-mbim.c by changing the memory-allocation approach. (bsc#1062645)
  • CVE-2017-15191: The DMP dissector could crash. This was addressed in epan/dissectors/packet-dmp.c by validating a string length. (bsc#1062645)
  • CVE-2017-17083: NetBIOS dissector could crash. This was addressed in epan/dissectors/packet-netbios.c by ensuring that write operations are bounded by the beginning of a buffer. (bsc#1070727)
  • CVE-2017-17084: IWARP_MPA dissector could crash. This was addressed in epan/dissectors/packet-iwarp-mpa.c by validating a ULPDU length. (bsc#1070727)
  • CVE-2017-17085: the CIP Safety dissector could crash. This was addressed in epan/dissectors/packet-cipsafety.c by validating the packet length. (bsc#1070727)

Список пакетов

SUSE Linux Enterprise Server 11 SP4
libsmi-0.4.5-2.7.2.1
libwireshark8-2.2.11-40.14.5
libwiretap6-2.2.11-40.14.5
libwscodecs1-2.2.11-40.14.5
libwsutil7-2.2.11-40.14.5
portaudio-19-234.18.1
wireshark-2.2.11-40.14.5
wireshark-gtk-2.2.11-40.14.5
SUSE Linux Enterprise Server for SAP Applications 11 SP4
libsmi-0.4.5-2.7.2.1
libwireshark8-2.2.11-40.14.5
libwiretap6-2.2.11-40.14.5
libwscodecs1-2.2.11-40.14.5
libwsutil7-2.2.11-40.14.5
portaudio-19-234.18.1
wireshark-2.2.11-40.14.5
wireshark-gtk-2.2.11-40.14.5
SUSE Linux Enterprise Software Development Kit 11 SP4
libsmi-0.4.5-2.7.2.1
libwireshark8-2.2.11-40.14.5
libwiretap6-2.2.11-40.14.5
libwscodecs1-2.2.11-40.14.5
libwsutil7-2.2.11-40.14.5
portaudio-19-234.18.1
portaudio-devel-19-234.18.1
wireshark-2.2.11-40.14.5
wireshark-devel-2.2.11-40.14.5
wireshark-gtk-2.2.11-40.14.5

Описание

In Wireshark 2.4.0, 2.2.0 to 2.2.8, and 2.0.0 to 2.0.14, the IrCOMM dissector has a buffer over-read and application crash. This was addressed in plugins/irda/packet-ircomm.c by adding length validation.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:libsmi-0.4.5-2.7.2.1
SUSE Linux Enterprise Server 11 SP4:libwireshark8-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwiretap6-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwscodecs1-2.2.11-40.14.5

Ссылки

Описание

In Wireshark 2.4.0 and 2.2.0 to 2.2.8, the Profinet I/O dissector could crash with an out-of-bounds write. This was addressed in plugins/profinet/packet-dcerpc-pn-io.c by adding string validation.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:libsmi-0.4.5-2.7.2.1
SUSE Linux Enterprise Server 11 SP4:libwireshark8-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwiretap6-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwscodecs1-2.2.11-40.14.5

Ссылки

Описание

In Wireshark 2.4.0, 2.2.0 to 2.2.8, and 2.0.0 to 2.0.14, the MSDP dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-msdp.c by adding length validation.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:libsmi-0.4.5-2.7.2.1
SUSE Linux Enterprise Server 11 SP4:libwireshark8-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwiretap6-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwscodecs1-2.2.11-40.14.5

Ссылки

Описание

In Wireshark 2.4.0 to 2.4.1, 2.2.0 to 2.2.9, and 2.0.0 to 2.0.15, the DMP dissector could crash. This was addressed in epan/dissectors/packet-dmp.c by validating a string length.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:libsmi-0.4.5-2.7.2.1
SUSE Linux Enterprise Server 11 SP4:libwireshark8-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwiretap6-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwscodecs1-2.2.11-40.14.5

Ссылки

Описание

In Wireshark 2.4.0 to 2.4.1 and 2.2.0 to 2.2.9, the BT ATT dissector could crash. This was addressed in epan/dissectors/packet-btatt.c by considering a case where not all of the BTATT packets have the same encapsulation level.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:libsmi-0.4.5-2.7.2.1
SUSE Linux Enterprise Server 11 SP4:libwireshark8-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwiretap6-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwscodecs1-2.2.11-40.14.5

Ссылки

Описание

In Wireshark 2.4.0 to 2.4.1 and 2.2.0 to 2.2.9, the MBIM dissector could crash or exhaust system memory. This was addressed in epan/dissectors/packet-mbim.c by changing the memory-allocation approach.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:libsmi-0.4.5-2.7.2.1
SUSE Linux Enterprise Server 11 SP4:libwireshark8-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwiretap6-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwscodecs1-2.2.11-40.14.5

Ссылки

Описание

In Wireshark 2.4.0 to 2.4.2 and 2.2.0 to 2.2.10, the NetBIOS dissector could crash. This was addressed in epan/dissectors/packet-netbios.c by ensuring that write operations are bounded by the beginning of a buffer.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:libsmi-0.4.5-2.7.2.1
SUSE Linux Enterprise Server 11 SP4:libwireshark8-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwiretap6-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwscodecs1-2.2.11-40.14.5

Ссылки

Описание

In Wireshark 2.4.0 to 2.4.2 and 2.2.0 to 2.2.10, the IWARP_MPA dissector could crash. This was addressed in epan/dissectors/packet-iwarp-mpa.c by validating a ULPDU length.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:libsmi-0.4.5-2.7.2.1
SUSE Linux Enterprise Server 11 SP4:libwireshark8-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwiretap6-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwscodecs1-2.2.11-40.14.5

Ссылки

Описание

In Wireshark 2.4.0 to 2.4.2 and 2.2.0 to 2.2.10, the CIP Safety dissector could crash. This was addressed in epan/dissectors/packet-cipsafety.c by validating the packet length.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:libsmi-0.4.5-2.7.2.1
SUSE Linux Enterprise Server 11 SP4:libwireshark8-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwiretap6-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwscodecs1-2.2.11-40.14.5

Ссылки

Описание

In Wireshark 2.2.7, deeply nested DAAP data may cause stack exhaustion (uncontrolled recursion) in the dissect_daap_one_tag function in epan/dissectors/packet-daap.c in the DAAP dissector.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:libsmi-0.4.5-2.7.2.1
SUSE Linux Enterprise Server 11 SP4:libwireshark8-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwiretap6-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwscodecs1-2.2.11-40.14.5

Ссылки

Описание

In Wireshark 2.2.7, PROFINET IO data with a high recursion depth allows remote attackers to cause a denial of service (stack exhaustion) in the dissect_IODWriteReq function in plugins/profinet/packet-dcerpc-pn-io.c.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:libsmi-0.4.5-2.7.2.1
SUSE Linux Enterprise Server 11 SP4:libwireshark8-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwiretap6-2.2.11-40.14.5
SUSE Linux Enterprise Server 11 SP4:libwscodecs1-2.2.11-40.14.5

Ссылки