Hello community, here is the log from the commit of package wireshark checked in at Wed Dec 19 14:56:13 CET 2007. -------- --- wireshark/wireshark.changes 2007-09-04 00:25:01.000000000 +0200 +++ /mounts/work_src_done/STABLE/wireshark/wireshark.changes 2007-12-19 13:42:11.000000000 +0100 @@ -1,0 +2,85 @@ +Wed Dec 19 13:34:17 CET 2007 - prusnak@suse.cz + +- updated to 0.99.7 + * security fixes + o Wireshark could crash when reading an MP3 file. + o Beyond Security discovered that Wireshark could loop + excessively while reading a malformed DNP packet. + o Stefan Esser discovered a buffer overflow in the SSL + dissector. + o The ANSI MAP dissector could be susceptible to a buffer + overflow on some platforms. + o The Firebird/Interbase dissector could go into an infinite + loop or crash. + o The NCP dissector could cause a crash. + o The HTTP dissector could crash on some systems while decoding + chunked messages. + o The MEGACO dissector could enter a large loop and consume + system resources. + o The DCP ETSI dissector could enter a large loop and consume + system resources. + o Fabiodds discovered a buffer overflow in the iSeries (OS/400) + Communication trace file parser. + o The PPP dissector could overflow a buffer. + o The Bluetooth SDP dissector could go into an infinite loop. + o A malformed RPC Portmap packet could cause a crash. + o The IPv6 dissector could loop excessively. + o The USB dissector could loop excessively or crash. + o The SMB dissector could crash. + o The RPL dissector could go into an infinite loop. + o The WiMAX dissector could crash due to unaligned access on + some platforms. + o The CIP dissector could attempt to allocate a huge amount of + memory and crash. + * bug fixes + o Handling of non-ASCII file names and paths has been improved. + o Wireshark could crash while editing a coloring rule or a UAT + table. + o The display filter code could crash while bitwise ANDing an + IPv4 address. + * news and updates + o Most of the capture code has been moved out of the GUI, which + means that Wireshark no longer needs to be run as root. + o Many display filter names have been cleaned up. If your + favorite display filter just went missing, please consult the + display filter reference to find out where it ended up. + o You can now filter directly on SNMP OIDs. + o IO graphs have more display options, and you can now export + graphs. + o You can now follow UDP streams in addition to TCP and SSL + streams. + o You can now disable coloring rules without deleting them. + o Main window toolbar buttons are now available even when the + window is small. + o Optimizations have been applied in some places to make + Wireshark start up and run faster. + * new protocol support + ANSI TCAP, application/xcap-error (MIME type), CFM, DPNSS, + EtherCAT, ETSI e2/e4, H.282, H.460, H.501, IEEE 802.1ad and + 802.1ah, IMF (RFC 2822), RSL, SABP, T.125, TNEF, TPNCP, UNISTIM, + Wake on LAN, WiMAX ASN Control Plane, X.224, + * updated protocol support + 3Com XNS, 3G A11, ACN, ACP123, ACSE, AIM, ANSI IS-637-A, ANSI MAP, + Armagetronad, BACapp, BACnet, BER, BFD, BGP, Bluetooth, CAMEL, + CDT, CFM, CIP, Cisco ERSPAN, CLNP, CMIP, CMS, COPS, CTDB, DCCP, + DCERPC ATSVC, DCERPC PNIO, DCERPC SAMR, DCERPC, DCOM CBA-ACCO, DCP + ETSI, DEC DNA, DFS, DHCP/BOOTP, DHCPv6, DIAMETER, DISP, DMP, DNP, + DNS, DOP, DTLS, DUA, eDonkey, ELSM, ESL, Ethernet, FC ELS, FC, + FCOE, FTAM, FTP, GDSDB, GIOP, GPRS-LLC, GSM A, GSM MAP, GTP, HSRP, + HTTP, IAX2, ICMPv6, IEEE 802.11, INAP, IP, IPMI, IPv6, ISAKMP, + ISIS, iSNS, ISUP, IUUP, JXTA, K12, Kerberos, L2TP, LAPD, LDAP, + LINX, LPD, LWAPP, MEGACO, MIKEY, MIME Multipart, MMS, MP2T, MPEG + PES, MPEG, MTP2, MySQL, NBAP, NetFlow, nettl, NFS, NSIP, OSPF, + P_MUL, PANA, PER, PKCS#12, PMIPv6, PN-PTCP, PN-RT, PPI, PPPoE, + PRES, PROFINET, PTP, Q.932 ROS, Q.932, QSIG, Radiotap, RADIUS, + RANAP, RNSAP, ROS, RTCP, RTP, RTSE, RTSP, SCCP, SCTP, SDP, + SIGCOMP, SIP, Slow Protocols, SMB, SMPP, SMTP, SNDCP, SNMP, SRP, + SSL, STANAG 4406, STUN2, TCAP, TCP, text/media, TIPC, ULP, UMA, + UMTS FP, V5UA, VNC, WiMAX M2M, WiMAX, WLCCP, X.411, X.420, X.509 + SAT, XML + * new and updated capture file support + Catapult DCT 2000, Endace ERF, Juniper NetScreen snoop, Visual + Networks, Windows Sniffer (NetXRay) +- removed fwrite_unused_result.patch + +------------------------------------------------------------------- Old: ---- wireshark-0.99.6-fwrite_unused_result.patch wireshark-0.99.6-help.patch wireshark-0.99.6.tar.bz2 New: ---- wireshark-0.99.7-help.patch wireshark-0.99.7.tar.bz2 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ wireshark.spec ++++++ --- /var/tmp/diff_new_pack.uO2025/_old 2007-12-19 14:52:37.000000000 +0100 +++ /var/tmp/diff_new_pack.uO2025/_new 2007-12-19 14:52:37.000000000 +0100 @@ -1,5 +1,5 @@ # -# spec file for package wireshark (Version 0.99.6) +# spec file for package wireshark (Version 0.99.7) # # Copyright (c) 2007 SUSE LINUX Products GmbH, Nuernberg, Germany. # This file and all modifications and additions to the pristine @@ -14,17 +14,16 @@ BuildRequires: cairo-devel gtk2-devel krb5-devel libadns-devel libpcap-devel net-snmp-devel openssl-devel pcre-devel python tcpd-devel update-desktop-files zlib-devel License: GPL v2 or later Group: Productivity/Networking/Diagnostic -Autoreqprov: on +AutoReqProv: on Summary: A Network Traffic Analyser -Version: 0.99.6 -Release: 23 -URL: http://www.wireshark.org/ +Version: 0.99.7 +Release: 1 +Url: http://www.wireshark.org/ Source: %{name}-%{version}.tar.bz2 Source1: %{name}.desktop Source2: %{name}.png Source3: include.filelist Patch0: %{name}-%{version}-help.patch -Patch1: %{name}-%{version}-fwrite_unused_result.patch BuildRoot: %{_tmppath}/%{name}-%{version}-build Provides: ethereal Obsoletes: ethereal @@ -68,7 +67,7 @@ %package devel Summary: A Network Traffic Analyser Group: Productivity/Networking/Diagnostic -Autoreqprov: on +AutoReqProv: on Requires: %{name} = %{version} Provides: ethereal-devel Obsoletes: ethereal-devel @@ -112,7 +111,6 @@ %prep %setup -q %patch0 -%patch1 %build %{suse_update_config -f wiretap .} @@ -151,11 +149,9 @@ %clean rm -rf $RPM_BUILD_ROOT -%post -%run_ldconfig +%post -p /sbin/ldconfig -%postun -%run_ldconfig +%postun -p /sbin/ldconfig %files %defattr(-,root,root) @@ -178,6 +174,88 @@ %{_mandir}/man1/idl2wrs* %changelog +* Wed Dec 19 2007 - prusnak@suse.cz +- updated to 0.99.7 + * security fixes + o Wireshark could crash when reading an MP3 file. + o Beyond Security discovered that Wireshark could loop + excessively while reading a malformed DNP packet. + o Stefan Esser discovered a buffer overflow in the SSL + dissector. + o The ANSI MAP dissector could be susceptible to a buffer + overflow on some platforms. + o The Firebird/Interbase dissector could go into an infinite + loop or crash. + o The NCP dissector could cause a crash. + o The HTTP dissector could crash on some systems while decoding + chunked messages. + o The MEGACO dissector could enter a large loop and consume + system resources. + o The DCP ETSI dissector could enter a large loop and consume + system resources. + o Fabiodds discovered a buffer overflow in the iSeries (OS/400) + Communication trace file parser. + o The PPP dissector could overflow a buffer. + o The Bluetooth SDP dissector could go into an infinite loop. + o A malformed RPC Portmap packet could cause a crash. + o The IPv6 dissector could loop excessively. + o The USB dissector could loop excessively or crash. + o The SMB dissector could crash. + o The RPL dissector could go into an infinite loop. + o The WiMAX dissector could crash due to unaligned access on + some platforms. + o The CIP dissector could attempt to allocate a huge amount of + memory and crash. + * bug fixes + o Handling of non-ASCII file names and paths has been improved. + o Wireshark could crash while editing a coloring rule or a UAT + table. + o The display filter code could crash while bitwise ANDing an + IPv4 address. + * news and updates + o Most of the capture code has been moved out of the GUI, which + means that Wireshark no longer needs to be run as root. + o Many display filter names have been cleaned up. If your + favorite display filter just went missing, please consult the + display filter reference to find out where it ended up. + o You can now filter directly on SNMP OIDs. + o IO graphs have more display options, and you can now export + graphs. + o You can now follow UDP streams in addition to TCP and SSL + streams. + o You can now disable coloring rules without deleting them. + o Main window toolbar buttons are now available even when the + window is small. + o Optimizations have been applied in some places to make + Wireshark start up and run faster. + * new protocol support + ANSI TCAP, application/xcap-error (MIME type), CFM, DPNSS, + EtherCAT, ETSI e2/e4, H.282, H.460, H.501, IEEE 802.1ad and + 802.1ah, IMF (RFC 2822), RSL, SABP, T.125, TNEF, TPNCP, UNISTIM, + Wake on LAN, WiMAX ASN Control Plane, X.224, + * updated protocol support + 3Com XNS, 3G A11, ACN, ACP123, ACSE, AIM, ANSI IS-637-A, ANSI MAP, + Armagetronad, BACapp, BACnet, BER, BFD, BGP, Bluetooth, CAMEL, + CDT, CFM, CIP, Cisco ERSPAN, CLNP, CMIP, CMS, COPS, CTDB, DCCP, + DCERPC ATSVC, DCERPC PNIO, DCERPC SAMR, DCERPC, DCOM CBA-ACCO, DCP + ETSI, DEC DNA, DFS, DHCP/BOOTP, DHCPv6, DIAMETER, DISP, DMP, DNP, + DNS, DOP, DTLS, DUA, eDonkey, ELSM, ESL, Ethernet, FC ELS, FC, + FCOE, FTAM, FTP, GDSDB, GIOP, GPRS-LLC, GSM A, GSM MAP, GTP, HSRP, + HTTP, IAX2, ICMPv6, IEEE 802.11, INAP, IP, IPMI, IPv6, ISAKMP, + ISIS, iSNS, ISUP, IUUP, JXTA, K12, Kerberos, L2TP, LAPD, LDAP, + LINX, LPD, LWAPP, MEGACO, MIKEY, MIME Multipart, MMS, MP2T, MPEG + PES, MPEG, MTP2, MySQL, NBAP, NetFlow, nettl, NFS, NSIP, OSPF, + P_MUL, PANA, PER, PKCS#12, PMIPv6, PN-PTCP, PN-RT, PPI, PPPoE, + PRES, PROFINET, PTP, Q.932 ROS, Q.932, QSIG, Radiotap, RADIUS, + RANAP, RNSAP, ROS, RTCP, RTP, RTSE, RTSP, SCCP, SCTP, SDP, + SIGCOMP, SIP, Slow Protocols, SMB, SMPP, SMTP, SNDCP, SNMP, SRP, + SSL, STANAG 4406, STUN2, TCAP, TCP, text/media, TIPC, ULP, UMA, + UMTS FP, V5UA, VNC, WiMAX M2M, WiMAX, WLCCP, X.411, X.420, X.509 + SAT, XML + * new and updated capture file support + Catapult DCT 2000, Endace ERF, Juniper NetScreen snoop, Visual + Networks, Windows Sniffer (NetXRay) +- removed fwrite_unused_result.patch * Tue Sep 04 2007 - ro@suse.de - disable -Werror for now * Thu Jul 26 2007 - prusnak@suse.cz ++++++ wireshark-0.99.6-help.patch -> wireshark-0.99.7-help.patch ++++++ ++++++ wireshark-0.99.6.tar.bz2 -> wireshark-0.99.7.tar.bz2 ++++++ wireshark/wireshark-0.99.6.tar.bz2 /mounts/work_src_done/STABLE/wireshark/wireshark-0.99.7.tar.bz2 differ: byte 11, line 1 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Remember to have fun... --------------------------------------------------------------------- To unsubscribe, e-mail: opensuse-commit+unsubscribe@opensuse.org For additional commands, e-mail: opensuse-commit+help@opensuse.org