[Security] April 3 2015 - 6 New CVEs affect Wireshark
| Affects | Status | Importance | Assigned to | Milestone | |
|---|---|---|---|---|---|
| | wireshark (Ubuntu) |
Medium
|
Unassigned | ||
| | Trusty |
Medium
|
Unassigned | ||
| | Utopic |
Medium
|
Steve Beattie | ||
Bug Description
There are 6 new CVEs which impact Wireshark in Utopic. (Three of these also affect Trusty)
------
CVE-2015-2187: (Utopic)
The dissect_
CVE-2015-2188: (Trusty, Utopic)
epan/dissectors
CVE-2015-2189: (Trusty, Utopic)
Off-by-one error in the pcapng_read function in wiretap/pcapng.c in the pcapng file parser in Wireshark 1.10.x before 1.10.13 and 1.12.x before 1.12.4 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via an invalid Interface Statistics Block (ISB) interface ID in a crafted packet.
CVE-2015-2190: (Utopic)
epan/proto.c in Wireshark 1.12.x before 1.12.4 does not properly handle integer data types greater than 32 bits in size, which allows remote attackers to cause a denial of service (assertion failure and application exit) via a crafted packet that is improperly handled by the LLDP dissector.
CVE-2015-2191: (Trusty, Utopic)
Integer overflow in the dissect_tnef function in epan/dissectors
CVE-2015-2192: (Utopic)
Integer overflow in the dissect_
------
Vivid is not affected by these CVEs as the archive autosync pulled in a version from Debian that has patches from Wireshark 1.12.4 which fix the problem.
Trusty and Utopic are affected.
Importance set to medium because the majority of these CVEs have a "medium" severity in the Ubuntu CVE tracker.
| Thomas Ward (teward) wrote : | #1 |
| description: | updated |
| tags: |
added: trusty removed: precise |
| Changed in wireshark (Ubuntu Trusty): | |
| status: | New → Confirmed |
| Changed in wireshark (Ubuntu Utopic): | |
| status: | New → Confirmed |
| Changed in wireshark (Ubuntu Trusty): | |
| importance: | Undecided → Critical |
| importance: | Critical → Medium |
| Changed in wireshark (Ubuntu Utopic): | |
| importance: | Undecided → Medium |
| Changed in wireshark (Ubuntu): | |
| status: | Confirmed → Fix Released |
| Thomas Ward (teward) wrote : | #2 |
Attached is a debdiff for Utopic to address this bug and the 6 CVEs. The included patches were taken from the auto-synced Vivid package, but had their patch names renamed in order to keep the sequential numbering in Utopic, as only security fixes were included, and there is an extra patch in Vivid which would make the CVE patches push the numbering out of sequence.
| Changed in wireshark (Ubuntu Utopic): | |
| status: | Confirmed → In Progress |
| assignee: | nobody → Steve Beattie (sbeattie) |
| Launchpad Janitor (janitor) wrote : | #3 |
This bug was fixed in the package wireshark - 1.12.1+
---------------
wireshark (1.12.1+
* Security Update to Address Multiple CVEs (LP: #1440202)
* Additional new patches (from 1.12.4) in debian/patches/ (from vivid
package, renamed for numerical sequence differences in Utopic):
* 29_1.12.
(
* 30_1.12.
(
* 31_1.12.
(
* 32_1.12.
(
* 33_1.12.
(
* 34_1.12.
(
-- Thomas Ward <email address hidden> Fri, 03 Apr 2015 17:12:34 -0400
| Changed in wireshark (Ubuntu Utopic): | |
| status: | In Progress → Fix Released |
| Steve Beattie (sbeattie) wrote : | #4 |
Unsubscribing ubuntu-


Marking Fix Released against the devel release as this is already fixed there.