LWN.net Logo

wireshark: multiple vulnerabilities

Package(s):wireshark CVE #(s):CVE-2013-2478 CVE-2013-2480 CVE-2013-2481 CVE-2013-2483 CVE-2013-2484 CVE-2013-2488
Created:March 15, 2013 Updated:March 20, 2013
Description:

From the Mageia advisory:

  • The sFlow dissector could go into an infinite loop (CVE-2012-6054).
  • The SCTP dissector could go into an infinite loop (CVE-2012-6056).
  • The MS-MMS dissector could crash (CVE-2013-2478).
  • The RTPS and RTPS2 dissectors could crash (CVE-2013-2480).
  • The Mount dissector could crash (CVE-2013-2481).
  • The AMPQ dissector could go into an infinite loop (CVE-2013-2482).
  • The ACN dissector could attempt to divide by zero (CVE-2013-2483).
  • The CIMD dissector could crash (CVE-2013-2484).
  • The FCSP dissector could go into an infinite loop (CVE-2013-2485).
  • The DTLS dissector could crash (CVE-2013-2488).
Alerts:
Debian DSA-2644-1 2013-03-14
Mageia MGASA-2013-0090 2013-03-15
openSUSE openSUSE-SU-2013:0494-1 2013-03-20
openSUSE openSUSE-SU-2013:0506-1 2013-03-20

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds