SuSE 11.2 Security Update : wireshark (SAT Patch Number 6760)

low Nessus Plugin ID 64231

Synopsis

The remote SuSE 11 host is missing a security update.

Description

wireshark was updated to 1.4.15 to fix multiple security issues.

Issues fixed :

- fix bnc#776038(CVE-2012-4285 / CVE-2012-4288 / CVE-2012-4289 / CVE-2012-4296 / CVE-2012-4291 / CVE-2012-4292 / CVE-2012-4293 / CVE-2012-4290), bnc#772738 (CVE-2012-4048 / CVE-2012-4049)(fixed upstream)

- Security fixes :

- wnpa-sec-2012-13 The DCP ETSI dissector could trigger a zero division. Reported by Laurent Butti. (Bug 7566)

- wnpa-sec-2012-15 The XTP dissector could go into an infinite loop. Reported by Ben Schmidt. (Bug 7571)

- wnpa-sec-2012-17 The AFP dissector could go into a large loop. Reported by Stefan Cornelius. (Bug 7603)

- wnpa-sec-2012-18 The RTPS2 dissector could overflow a buffer. Reported by Laurent Butti. (Bug 7568)

- wnpa-sec-2012-20 The CIP dissector could exhaust system memory. Reported y Ben Schmidt. (Bug 7570)

- wnpa-sec-2012-21 The STUN dissector could crash.
Reported by Laurent Butti. (Bug 7569)

- wnpa-sec-2012-22 The EtherCAT Mailbox dissector could abort. Reported by Laurent Butti. (Bug 7562)

- wnpa-sec-2012-23 The CTDB dissector could go into a large loop. Reported by Ben Schmidt. (Bug 7573)

- Bug fixes :

- Wireshark crashes on opening very short NFS pcap file.
(Bug 7498)

- Updated Protocol Support

- AFP, Bluetooth L2CAP, CIP, CTDB, DCP ETSI, EtherCAT Mailbox, FC Link Control LISP, NFS, RTPS2, SCTP, STUN, XTP

Solution

Apply SAT patch number 6760.

See Also

https://bugzilla.novell.com/show_bug.cgi?id=772738

https://bugzilla.novell.com/show_bug.cgi?id=776083

http://support.novell.com/security/cve/CVE-2012-4048.html

http://support.novell.com/security/cve/CVE-2012-4049.html

http://support.novell.com/security/cve/CVE-2012-4285.html

http://support.novell.com/security/cve/CVE-2012-4288.html

http://support.novell.com/security/cve/CVE-2012-4289.html

http://support.novell.com/security/cve/CVE-2012-4290.html

http://support.novell.com/security/cve/CVE-2012-4291.html

http://support.novell.com/security/cve/CVE-2012-4292.html

http://support.novell.com/security/cve/CVE-2012-4293.html

http://support.novell.com/security/cve/CVE-2012-4296.html

Plugin Details

Severity: Low

ID: 64231

File Name: suse_11_wireshark-120831.nasl

Version: 1.4

Type: local

Agent: unix

Published: 1/25/2013

Updated: 1/19/2021

Supported Sensors: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 4.4

CVSS v2

Risk Factor: Low

Base Score: 3.3

Vector: CVSS2#AV:A/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Information

CPE: cpe:/o:novell:suse_linux:11, p-cpe:/a:novell:suse_linux:11:wireshark

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Patch Publication Date: 8/31/2012

Reference Information

CVE: CVE-2012-4048, CVE-2012-4049, CVE-2012-4285, CVE-2012-4288, CVE-2012-4289, CVE-2012-4290, CVE-2012-4291, CVE-2012-4292, CVE-2012-4293, CVE-2012-4296