Sync wireshark 1.4.4-1 (universe) from Debian unstable (main)

Bug #728811 reported by Micah Gersten
8
This bug affects 1 person
Affects Status Importance Assigned to Milestone
wireshark (Ubuntu)
Fix Released
Wishlist
Unassigned

Bug Description

Please sync wireshark 1.4.4-1 (universe) from Debian unstable (main)

Changelog entries since current natty version 1.4.3-3:

wireshark (1.4.4-1) unstable; urgency=high

  * New upstream release 1.4.4
    - release notes:
      http://www.wireshark.org/docs/relnotes/wireshark-1.4.4.html
    - security fixes
      - Huzaifa Sidhpurwala of the Red Hat Security Response Team discovered
        that a large packet length in a pcap-ng file could crash Wireshark.
        (No assigned CVE number.)
      - Wireshark could overflow a buffer while reading a Nokia DCT3 trace
        file. (CVE-2011-0713)
      - Paul Makowski working for SEI/CERT discovered that Wireshark on 32
        bit systems could crash while reading a malformed 6LoWPAN packet.
        (No assigned CVE number.)
      - joernchen of Phenoelit discovered that the LDAP and SMB dissectors
        could overflow the stack.
        (No assigned CVE number.)
      - Xiaopeng Zhang of Fortinet's Fortiguard Labs discovered that large
        LDAP Filter strings can consume excessive amounts of memory.
        (No assigned CVE number.)
   * drop 06_fix_crash_on_pcapng_file_error.patch since it is included in
     the new release

 -- Balint Reczey <email address hidden> Wed, 02 Mar 2011 14:07:27 +0100

Micah Gersten (micahg)
Changed in wireshark (Ubuntu):
importance: Undecided → Wishlist
status: New → Confirmed
Revision history for this message
Colin Watson (cjwatson) wrote :

[Updating] wireshark (1.4.3-3 [Ubuntu] < 1.4.4-1 [Debian])
 * Trying to add wireshark...
2011-03-07 14:43:54 INFO - <wireshark_1.4.4.orig.tar.bz2: downloading from http://ftp.debian.org/debian/>
2011-03-07 14:43:57 INFO - <wireshark_1.4.4-1.dsc: downloading from http://ftp.debian.org/debian/>
2011-03-07 14:43:57 INFO - <wireshark_1.4.4-1.debian.tar.gz: downloading from http://ftp.debian.org/debian/>
I: wireshark [universe] -> wireshark-common_1.4.3-3 [universe].
I: wireshark [universe] -> wireshark_1.4.3-3 [universe].
I: wireshark [universe] -> tshark_1.4.3-3 [universe].
I: wireshark [universe] -> wireshark-dev_1.4.3-3 [universe].
I: wireshark [universe] -> wireshark-dbg_1.4.3-3 [universe].
I: wireshark [universe] -> wireshark-doc_1.4.3-3 [universe].
I: wireshark [universe] -> libwireshark0_1.4.3-3 [universe].
I: wireshark [universe] -> libwsutil0_1.4.3-3 [universe].
I: wireshark [universe] -> libwsutil-dev_1.4.3-3 [universe].
I: wireshark [universe] -> libwireshark-data_1.4.3-3 [universe].
I: wireshark [universe] -> libwireshark-dev_1.4.3-3 [universe].
I: wireshark [universe] -> libwiretap0_1.4.3-3 [universe].
I: wireshark [universe] -> libwiretap-dev_1.4.3-3 [universe].

Changed in wireshark (Ubuntu):
status: Confirmed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.