[Bug 801131] New: wireshark update to 1.8.5
https://bugzilla.novell.com/show_bug.cgi?id=801131 https://bugzilla.novell.com/show_bug.cgi?id=801131#c0 Summary: wireshark update to 1.8.5 Classification: openSUSE Product: openSUSE 12.2 Version: Final Platform: Other OS/Version: Other Status: NEW Severity: Normal Priority: P5 - None Component: Security AssignedTo: security-team@suse.de ReportedBy: Andreas.Stieger@gmx.de QAContact: qa-bugs@suse.de Found By: --- Blocker: --- User-Agent: Mozilla/5.0 (X11; Linux i686; rv:18.0) Gecko/20100101 Firefox/18.0 https://www.wireshark.org/docs/relnotes/wireshark-1.8.5.html wnpa-sec-2013-01 Infinite and large loops in the Bluetooth HCI, CSN.1, DCP-ETSI DOCSIS CM-STAUS, IEEE 802.3 Slow Protocols, MPLS, R3, RTPS, SDP, and SIP dissectors. Reported by Laurent Butti. (Bugs 8036, 8037, 8038, 8040, 8041, 8042, 8043, 8198, 8199, 8222) wnpa-sec-2013-02 The CLNP dissector could crash. Discovered independently by Laurent Butti and the Wireshark development team. (Bug 7871) wnpa-sec-2013-03 The DTN dissector could crash. (Bug 7945) wnpa-sec-2013-04 The MS-MMC dissector (and possibly others) could crash. (Bug 8112) wnpa-sec-2013-05 The DTLS dissector could crash. Discovered by Laurent Butti. (Bug 8111) wnpa-sec-2013-06 The ROHC dissector could crash. (Bug 7679) wnpa-sec-2013-07 The DCP-ETSI dissector could corrupt memory. Discovered by Laurent Butti. (Bug 8213) wnpa-sec-2013-08 The Wireshark dissection engine could crash. Discovered by Laurent Butti. (Bug 8197) wnpa-sec-2013-09 The NTLMSSP dissector could overflow a buffer. Discovered by Ulf Härnhammar. Reproducible: Always -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=801131 https://bugzilla.novell.com/show_bug.cgi?id=801131#c Sebastian Krahmer <krahmer@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |krahmer@suse.com, | |security-team@suse.de AssignedTo|security-team@suse.de |cyliu@suse.com -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=801131 https://bugzilla.novell.com/show_bug.cgi?id=801131#c Andreas Stieger <Andreas.Stieger@gmx.de> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |ASSIGNED AssignedTo|cyliu@suse.com |Andreas.Stieger@gmx.de -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=801131 https://bugzilla.novell.com/show_bug.cgi?id=801131#c1 --- Comment #1 from Bernhard Wiedemann <bwiedemann@suse.com> 2013-01-30 22:00:09 CET --- This is an autogenerated message for OBS integration: This bug (801131) was mentioned in https://build.opensuse.org/request/show/150479 Factory / wireshark -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=801131 https://bugzilla.novell.com/show_bug.cgi?id=801131#c2 Andreas Stieger <Andreas.Stieger@gmx.de> changed: What |Removed |Added ---------------------------------------------------------------------------- AssignedTo|Andreas.Stieger@gmx.de |security-team@suse.de --- Comment #2 from Andreas Stieger <Andreas.Stieger@gmx.de> 2013-01-30 21:14:12 UTC --- SR to openSUSE:Factory: https://build.opensuse.org/request/show/150479 MR for 12.1 / 12.2: https://build.opensuse.org/request/show/150484 -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=801131 https://bugzilla.novell.com/show_bug.cgi?id=801131#c3 --- Comment #3 from Andreas Stieger <Andreas.Stieger@gmx.de> 2013-01-31 06:00:04 UTC --- from oss-sec: wnpa-sec-2013-01 bug 8036 CVE-2013-1572 wnpa-sec-2013-01 bug 8037 CVE-2013-1573 wnpa-sec-2013-01 bug 8038 CVE-2013-1574 wnpa-sec-2013-01 bug 8040 CVE-2013-1575 wnpa-sec-2013-01 bug 8041 CVE-2013-1576 wnpa-sec-2013-01 bug 8042 CVE-2013-1577 wnpa-sec-2013-01 bug 8043 CVE-2013-1578 wnpa-sec-2013-01 bug 8198 CVE-2013-1579 wnpa-sec-2013-01 bug 8199 CVE-2013-1580 wnpa-sec-2013-01 bug 8222 CVE-2013-1581 wnpa-sec-2013-02 bug 7871 CVE-2013-1582 wnpa-sec-2013-03 bug 7945 r46577 CVE-2013-1583 wnpa-sec-2013-03 bug 7945 r46579 CVE-2013-1584 wnpa-sec-2013-04 bug 8112 CVE-2013-1585 wnpa-sec-2013-05 bug 8111 CVE-2013-1586 wnpa-sec-2013-06 bug 7679 CVE-2013-1587 wnpa-sec-2013-07 bug 8213 CVE-2013-1588 wnpa-sec-2013-08 bug 8197 CVE-2013-1589 wnpa-sec-2013-09 (no bug number listed) CVE-2013-1590 -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=801131 https://bugzilla.novell.com/show_bug.cgi?id=801131#c4 --- Comment #4 from Andreas Stieger <Andreas.Stieger@gmx.de> 2013-01-31 06:18:15 UTC --- SR to openSUSE:Factory: https://build.opensuse.org/request/show/150508 MR for 12.1 / 12.2: https://build.opensuse.org/request/show/150509 -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=801131 https://bugzilla.novell.com/show_bug.cgi?id=801131#c5 Chunyan Liu <cyliu@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |cyliu@suse.com --- Comment #5 from Chunyan Liu <cyliu@suse.com> 2013-02-01 10:21:05 UTC --- (In reply to comment #4)
SR to openSUSE:Factory: https://build.opensuse.org/request/show/150508 MR for 12.1 / 12.2: https://build.opensuse.org/request/show/150509
(In reply to comment #4)
SR to openSUSE:Factory: https://build.opensuse.org/request/show/150508 MR for 12.1 / 12.2: https://build.opensuse.org/request/show/150509
update SLE-10-SP3_Update_Test to 1.6.13 (IBS sr#23980) update SLE-11_Update_Test to 1.8.5 (IBS sr#23981) -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=801131 https://bugzilla.novell.com/show_bug.cgi?id=801131#c6 Marcus Meissner <meissner@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |meissner@suse.com Summary|wireshark update to 1.8.5 |VUL-0: wireshark update to | |1.8.5 --- Comment #6 from Marcus Meissner <meissner@suse.com> 2013-02-04 10:43:29 UTC --- both submits got rejected. SLE11: SR#23981 State: declined 2013-02-01T10:19:04 leonardocf Comment: E: check_if_valid_source_dir fails on the package. (E) Attention, wireshark-disable-warning-dialog.patch is not mentioned in spec files as source or patch. This seems fixable. SLE10: SR#23980 State: declined 2013-02-01T15:35:29 babelworx Comment: No GPL-3.0 in SLE10 - Did this submit fix the previous hang reported by QA? - Why did you adjust it to have GPL 3.0 here? -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=801131 https://bugzilla.novell.com/show_bug.cgi?id=801131#c7 --- Comment #7 from Andreas Stieger <Andreas.Stieger@gmx.de> 2013-02-04 10:47:07 UTC --- Is there any way the openSUSE MR can go ahead regardless of SLE? https://build.opensuse.org/request/show/150509 -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=801131 https://bugzilla.novell.com/show_bug.cgi?id=801131#c8 --- Comment #8 from Marcus Meissner <meissner@suse.com> 2013-02-04 10:56:11 UTC --- yes of course... accepting now -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=801131 https://bugzilla.novell.com/show_bug.cgi?id=801131#c Swamp Workflow Management <swamp@suse.de> changed: What |Removed |Added ---------------------------------------------------------------------------- Status Whiteboard| |obs:running:1298:moderate -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@novell.com