Debian Security Advisory
DSA-2590-1 wireshark -- several vulnerabilities
- Date Reported:
- 26 Dec 2012
- Affected Packages:
- wireshark
- Vulnerable:
- Yes
- Security database references:
- In Mitre's CVE dictionary: CVE-2012-4048, CVE-2012-4296.
- More information:
-
Bjorn Mork and Laurent Butti discovered crashes in the PPP and RTPS2 dissectors, which could potentially result in the execution of arbitrary code.
For the stable distribution (squeeze), these problems have been fixed in version 1.2.11-6+squeeze8.
For the unstable distribution (sid), these problems have been fixed in version 1.8.2-1.
We recommend that you upgrade your wireshark packages.