Описание
Security update for wireshark
This update for wireshark fixes the following issues:
- CVE-2024-24476: Fixed a denial of service in ws_manuf_lookup_str() (bsc#1220181)
Список пакетов
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production
libwireshark9-2.4.16-48.54.1
libwiretap7-2.4.16-48.54.1
libwscodecs1-2.4.16-48.54.1
libwsutil8-2.4.16-48.54.1
wireshark-2.4.16-48.54.1
Image SLES12-SP5-SAP-Azure-VLI-BYOS-Production
libwireshark9-2.4.16-48.54.1
libwiretap7-2.4.16-48.54.1
libwscodecs1-2.4.16-48.54.1
libwsutil8-2.4.16-48.54.1
wireshark-2.4.16-48.54.1
SUSE Linux Enterprise Server 12 SP5
libwireshark9-2.4.16-48.54.1
libwiretap7-2.4.16-48.54.1
libwscodecs1-2.4.16-48.54.1
libwsutil8-2.4.16-48.54.1
wireshark-2.4.16-48.54.1
wireshark-gtk-2.4.16-48.54.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
libwireshark9-2.4.16-48.54.1
libwiretap7-2.4.16-48.54.1
libwscodecs1-2.4.16-48.54.1
libwsutil8-2.4.16-48.54.1
wireshark-2.4.16-48.54.1
wireshark-gtk-2.4.16-48.54.1
SUSE Linux Enterprise Software Development Kit 12 SP5
wireshark-devel-2.4.16-48.54.1
Ссылки
- Link for SUSE-SU-2024:1354-1
- E-Mail link for SUSE-SU-2024:1354-1
- SUSE Security Ratings
- SUSE Bug 1220181
- SUSE CVE CVE-2024-24476 page
Описание
** DISPUTED ** A buffer overflow in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the pan/addr_resolv.c, and ws_manuf_lookup_str(), size components. NOTE: this is disputed by the vendor because neither release 4.2.0 nor any other release was affected.
Затронутые продукты
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production:libwireshark9-2.4.16-48.54.1
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production:libwiretap7-2.4.16-48.54.1
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production:libwscodecs1-2.4.16-48.54.1
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production:libwsutil8-2.4.16-48.54.1
Ссылки
- CVE-2024-24476
- SUSE Bug 1220181