Описание
Security update for wireshark
This update to Wireshark 2.2.6 fixes minor vulnerabilities that could be used to trigger a dissector crash or infinite loops by sending specially crafted packages over the network or into a capture file:
- CVE-2017-7700: NetScaler file parser infinite loop (boo#1033936)
- CVE-2017-7701: BGP dissector infinite loop (boo#1033937)
- CVE-2017-7702: WBMXL dissector infinite loop (boo#1033938)
- CVE-2017-7703: IMAP dissector crash (boo#1033939)
- CVE-2017-7704: DOF dissector infinite loop (boo#1033940)
- CVE-2017-7705: RPCoRDMA dissector infinite loop (boo#1033941)
- CVE-2017-7745: SIGCOMP dissector infinite loop (boo#1033942)
- CVE-2017-7746: SLSK dissector long loop (boo#1033943)
- CVE-2017-7747: PacketBB dissector crash (boo#1033944)
- CVE-2017-7748: WSP dissector infinite loop (boo#1033945)
Список пакетов
openSUSE Leap 42.2
Ссылки
- E-Mail link for openSUSE-SU-2017:1087-1
- SUSE Security Ratings
Описание
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the NetScaler file parser could go into an infinite loop, triggered by a malformed capture file. This was addressed in wiretap/netscaler.c by ensuring a nonzero record size.
Затронутые продукты
Ссылки
- CVE-2017-7700
- SUSE Bug 1033936
Описание
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the BGP dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-bgp.c by using a different integer data type.
Затронутые продукты
Ссылки
- CVE-2017-7701
- SUSE Bug 1033937
Описание
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the WBXML dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-wbxml.c by adding length validation.
Затронутые продукты
Ссылки
- CVE-2017-7702
- SUSE Bug 1033938
- SUSE Bug 1049255
Описание
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the IMAP dissector could crash, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-imap.c by calculating a line's end correctly.
Затронутые продукты
Ссылки
- CVE-2017-7703
- SUSE Bug 1033939
Описание
In Wireshark 2.2.0 to 2.2.5, the DOF dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-dof.c by using a different integer data type and adjusting a return value.
Затронутые продукты
Ссылки
- CVE-2017-7704
- SUSE Bug 1033940
Описание
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the RPC over RDMA dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-rpcrdma.c by correctly checking for going beyond the maximum offset.
Затронутые продукты
Ссылки
- CVE-2017-7705
- SUSE Bug 1033941
Описание
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the SIGCOMP dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-sigcomp.c by correcting a memory-size check.
Затронутые продукты
Ссылки
- CVE-2017-7745
- SUSE Bug 1033942
Описание
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the SLSK dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-slsk.c by adding checks for the remaining length.
Затронутые продукты
Ссылки
- CVE-2017-7746
- SUSE Bug 1033943
Описание
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the PacketBB dissector could crash, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-packetbb.c by restricting additions to the protocol tree.
Затронутые продукты
Ссылки
- CVE-2017-7747
- SUSE Bug 1033944
Описание
In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the WSP dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-wsp.c by adding a length check.
Затронутые продукты
Ссылки
- CVE-2017-7748
- SUSE Bug 1033945