Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2024:1354-1

Опубликовано: 19 апр. 2024
Источник: suse-cvrf

Описание

Security update for wireshark

This update for wireshark fixes the following issues:

  • CVE-2024-24476: Fixed a denial of service in ws_manuf_lookup_str() (bsc#1220181)

Список пакетов

Image SLES12-SP5-SAP-Azure-LI-BYOS-Production
libwireshark9-2.4.16-48.54.1
libwiretap7-2.4.16-48.54.1
libwscodecs1-2.4.16-48.54.1
libwsutil8-2.4.16-48.54.1
wireshark-2.4.16-48.54.1
Image SLES12-SP5-SAP-Azure-VLI-BYOS-Production
libwireshark9-2.4.16-48.54.1
libwiretap7-2.4.16-48.54.1
libwscodecs1-2.4.16-48.54.1
libwsutil8-2.4.16-48.54.1
wireshark-2.4.16-48.54.1
SUSE Linux Enterprise Server 12 SP5
libwireshark9-2.4.16-48.54.1
libwiretap7-2.4.16-48.54.1
libwscodecs1-2.4.16-48.54.1
libwsutil8-2.4.16-48.54.1
wireshark-2.4.16-48.54.1
wireshark-gtk-2.4.16-48.54.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
libwireshark9-2.4.16-48.54.1
libwiretap7-2.4.16-48.54.1
libwscodecs1-2.4.16-48.54.1
libwsutil8-2.4.16-48.54.1
wireshark-2.4.16-48.54.1
wireshark-gtk-2.4.16-48.54.1
SUSE Linux Enterprise Software Development Kit 12 SP5
wireshark-devel-2.4.16-48.54.1

Описание

** DISPUTED ** A buffer overflow in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the pan/addr_resolv.c, and ws_manuf_lookup_str(), size components. NOTE: this is disputed by the vendor because neither release 4.2.0 nor any other release was affected.


Затронутые продукты
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production:libwireshark9-2.4.16-48.54.1
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production:libwiretap7-2.4.16-48.54.1
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production:libwscodecs1-2.4.16-48.54.1
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production:libwsutil8-2.4.16-48.54.1

Ссылки