Wireshark 1.0.3 fixes multiple vulnerabilities

Bug #277895 reported by Luca Falavigna
2
Affects Status Importance Assigned to Milestone
wireshark (Debian)
Fix Released
Unknown
wireshark (Ubuntu)
Fix Released
Medium
Luca Falavigna

Bug Description

Binary package hint: wireshark

1.0.3 release notes: http://www.wireshark.org/docs/relnotes/wireshark-1.0.3.html

Changed in wireshark:
assignee: nobody → dktrkranz
importance: Undecided → Medium
status: New → Confirmed
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package wireshark - 1.0.3-1ubuntu1

---------------
wireshark (1.0.3-1ubuntu1) intrepid; urgency=low

  * Merge from Debian unstable (LP: #277895). Remaining Ubuntu changes:
    - Corrected FTBFS on all architectures related to autotools and
      config.guess/config.status by allowing a check to fail in some cases.
    - Replace gksu with menu in Recommends.
    - Add debian/README.source.

wireshark (1.0.3-1) unstable; urgency=high

  * New upstream release 1.0.3 (Closes: #497878)
    - release notes:
     http://www.wireshark.org/docs/relnotes/wireshark-1.0.3.html
    - security fixes:
      - The NCP dissector was susceptible to a number of problems,
        including buffer overflows and an infinite loop
        (CVE-2008-3146, CVE-2008-3932)
      - Wireshark could crash while uncompressing zlib-compressed
        packet data (CVE-2008-3933)
      - Wireshark could crash while reading a Tektronix .rf5 file
        (CVE-2008-3934)
    - other fixes:
      - Following a TCP stream could incorrectly reassemble packets
        (Closes: #496768)

wireshark (1.0.2-3) unstable; urgency=low

  * remove build-dependency on libsmi-dev; libsmi
    seems to be in bad shape in Debian; don't want
    to be dependent on it this close to the release

wireshark (1.0.2-2) unstable; urgency=low

  * switch to libcap2 (Closes: #489310)
  * include rawshark in common (Closes: #490436)
  * include dumpcap manpage (Closes: #490434)
  * build-depend on libsmi-dev (Closes: #490429)
  * switch to standards-version 3.8.0.1

 -- Luca Falavigna <email address hidden> Sat, 04 Oct 2008 03:25:01 +0200

Changed in wireshark:
status: Confirmed → Fix Released
Changed in wireshark:
status: Unknown → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.