Debian Security Advisory
DSA-2201-1 wireshark -- several vulnerabilities
- Date Reported:
- 23 Mar 2011
- Affected Packages:
- Security database references:
- In Mitre's CVE dictionary: CVE-2011-0538, CVE-2011-0713, CVE-2011-1139, CVE-2011-1140, CVE-2011-1141.
- More information:
Huzaifa Sidhpurwala, Joernchen, and Xiaopeng Zhang discovered several vulnerabilities in the Wireshark network traffic analyzer. Vulnerabilities in the DCT3, LDAP and SMB dissectors and in the code to parse pcag-ng files could lead to denial of service or the execution of arbitrary code.
For the oldstable distribution (lenny), this problem has been fixed in version 1.0.2-3+lenny13.
For the stable distribution (squeeze), this problem has been fixed in version 1.2.11-6+squeeze1.
For the unstable distribution (sid), this problem has been fixed in version 1.4.4-1.
We recommend that you upgrade your wireshark packages.