Security Advisory Low: wireshark security update

Advisory: RHSA-2007:0066-5
Type: Security Advisory
Severity: Low
Issued on: 2007-03-14
Last updated on: 2007-03-14
Affected Products: RHEL Desktop Workstation (v. 5 client)
Red Hat Desktop (v. 3)
Red Hat Desktop (v. 4)
Red Hat Enterprise Linux (v. 5 server)
Red Hat Enterprise Linux AS (v. 2.1)
Red Hat Enterprise Linux AS (v. 3)
Red Hat Enterprise Linux AS (v. 4)
Red Hat Enterprise Linux Desktop (v. 5 client)
Red Hat Enterprise Linux ES (v. 2.1)
Red Hat Enterprise Linux ES (v. 3)
Red Hat Enterprise Linux ES (v. 4)
Red Hat Enterprise Linux WS (v. 2.1)
Red Hat Enterprise Linux WS (v. 3)
Red Hat Enterprise Linux WS (v. 4)
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor
OVAL: com.redhat.rhsa-20070066.xml
CVEs (cve.mitre.org): CVE-2007-0456
CVE-2007-0457
CVE-2007-0458
CVE-2007-0459

Details

New Wireshark packages that fix various security vulnerabilities are now
available. Wireshark was previously known as Ethereal.

This update has been rated as having low security impact by the Red Hat
Security Response Team.

Wireshark is a program for monitoring network traffic.

Several denial of service bugs were found in Wireshark's LLT, IEEE 802.11,
http, and tcp protocol dissectors. It was possible for Wireshark to crash
or stop responding if it read a malformed packet off the network.
(CVE-2007-0456, CVE-2007-0457, CVE-2007-0458, CVE-2007-0459)

Users of Wireshark should upgrade to these updated packages containing
Wireshark version 0.99.5, which is not vulnerable to these issues.


Solution

Before applying this update, make sure that all previously-released
errata relevant to your system have been applied.

This update is available via Red Hat Network. Details on how to use
the Red Hat Network to apply this update are available at
http://kbase.redhat.com/faq/FAQ_58_10188

Updated packages

RHEL Desktop Workstation (v. 5 client)

IA-32:
wireshark-gnome-0.99.5-1.el5.i386.rpm
File outdated by:  RHSA-2008:0058
    9a1fac83085a7198d5d5e2458a9470f8
 
x86_64:
wireshark-gnome-0.99.5-1.el5.x86_64.rpm
File outdated by:  RHSA-2008:0058
    bfd080375e919294702992180c392d0e
 
Red Hat Desktop (v. 3)

SRPMS:
wireshark-0.99.5-EL3.1.src.rpm
File outdated by:  RHSA-2008:0059
    c7255e4fa8af9ea9e6f8e1ee725e99e0
 
IA-32:
wireshark-0.99.5-EL3.1.i386.rpm
File outdated by:  RHSA-2008:0059
    34ed0d94e523c71598f686e2cd1f12a7
wireshark-gnome-0.99.5-EL3.1.i386.rpm
File outdated by:  RHSA-2008:0059
    51c2537226e42b98628130f8bd7c59ae
 
x86_64:
wireshark-0.99.5-EL3.1.x86_64.rpm
File outdated by:  RHSA-2008:0059
    9cb61c5d8b95d8f83be1625deac47149
wireshark-gnome-0.99.5-EL3.1.x86_64.rpm
File outdated by:  RHSA-2008:0059
    aad3f0b52b39619959761586c374821b
 
Red Hat Desktop (v. 4)

SRPMS:
wireshark-0.99.5-EL4.1.src.rpm
File outdated by:  RHSA-2008:0058
    f9a8dcaf414f499920f5199dbbc28ca1
 
IA-32:
wireshark-0.99.5-EL4.1.i386.rpm
File outdated by:  RHSA-2008:0058
    30bd4ee2fb228d263ed311f658f6dda7
wireshark-gnome-0.99.5-EL4.1.i386.rpm
File outdated by:  RHSA-2008:0058
    1882b5a6ebe75341c5487a6475366b44
 
x86_64:
wireshark-0.99.5-EL4.1.x86_64.rpm
File outdated by:  RHSA-2008:0058
    9c952637d690e2b1bc56d0b7dee10037
wireshark-gnome-0.99.5-EL4.1.x86_64.rpm
File outdated by:  RHSA-2008:0058
    a7640db353e1b6ed82bfed2f6b69aa80
 
Red Hat Enterprise Linux (v. 5 server)

SRPMS:
wireshark-0.99.5-1.el5.src.rpm
File outdated by:  RHSA-2008:0058
    9d82bbd74ce9e46b5b029ce6c888fca1
 
IA-32:
wireshark-0.99.5-1.el5.i386.rpm
File outdated by:  RHSA-2008:0058
    7b122e6649aae58047ba0ba52e95b098
wireshark-gnome-0.99.5-1.el5.i386.rpm
File outdated by:  RHSA-2008:0058
    9a1fac83085a7198d5d5e2458a9470f8
 
IA-64:
wireshark-0.99.5-1.el5.ia64.rpm
File outdated by:  RHSA-2008:0058
    721f3ceef0332dff923788b52324927a
wireshark-gnome-0.99.5-1.el5.ia64.rpm
File outdated by:  RHSA-2008:0058
    15a81f98c580035a4bdbf6561973eb51
 
PPC:
wireshark-0.99.5-1.el5.ppc.rpm
File outdated by:  RHSA-2008:0058
    31f9643c15386b3e2abda11ba247a0d0
wireshark-gnome-0.99.5-1.el5.ppc.rpm
File outdated by:  RHSA-2008:0058
    4fb3acc5c5984c27c36d5abb21b79486
 
s390x:
wireshark-0.99.5-1.el5.s390x.rpm
File outdated by:  RHSA-2008:0058
    4d6cf43bf9684f03dc4c2bb629a647dc
wireshark-gnome-0.99.5-1.el5.s390x.rpm
File outdated by:  RHSA-2008:0058
    db2d8fc707cefe67c6662591bbd87f69
 
x86_64:
wireshark-0.99.5-1.el5.x86_64.rpm
File outdated by:  RHSA-2008:0058
    c694b461024223123dcccc99e36fbcfe
wireshark-gnome-0.99.5-1.el5.x86_64.rpm
File outdated by:  RHSA-2008:0058
    bfd080375e919294702992180c392d0e
 
Red Hat Enterprise Linux AS (v. 2.1)

SRPMS:
wireshark-0.99.5-AS21.3.src.rpm     910c560ed0a96d5d421fdd4dc960e58b
 
IA-32:
wireshark-0.99.5-AS21.3.i386.rpm     b77cfcda3db81ff075eacc7f6b8da85d
wireshark-gnome-0.99.5-AS21.3.i386.rpm     3ba3d22aba95c5738b35bce0ff61be23
 
IA-64:
wireshark-0.99.5-AS21.3.ia64.rpm     ec1c1946804e2bff049c49283c93e51b
wireshark-gnome-0.99.5-AS21.3.ia64.rpm     a38f01c33c7d7aaa2b297378384688b4
 
Red Hat Enterprise Linux AS (v. 3)

SRPMS:
wireshark-0.99.5-EL3.1.src.rpm
File outdated by:  RHSA-2008:0059
    c7255e4fa8af9ea9e6f8e1ee725e99e0
 
IA-32:
wireshark-0.99.5-EL3.1.i386.rpm
File outdated by:  RHSA-2008:0059
    34ed0d94e523c71598f686e2cd1f12a7
wireshark-gnome-0.99.5-EL3.1.i386.rpm
File outdated by:  RHSA-2008:0059
    51c2537226e42b98628130f8bd7c59ae
 
IA-64:
wireshark-0.99.5-EL3.1.ia64.rpm
File outdated by:  RHSA-2008:0059
    daf4a17f63e344828751e80281ebb877
wireshark-gnome-0.99.5-EL3.1.ia64.rpm
File outdated by:  RHSA-2008:0059
    3c80210a835d9daa2001a87b61bfa94f
 
PPC:
wireshark-0.99.5-EL3.1.ppc.rpm
File outdated by:  RHSA-2008:0059
    f227857529add11741a61af950c52a34
wireshark-gnome-0.99.5-EL3.1.ppc.rpm
File outdated by:  RHSA-2008:0059
    79016cc05e209507144f51fb39f91b79
 
s390:
wireshark-0.99.5-EL3.1.s390.rpm
File outdated by:  RHSA-2008:0059
    da432075e4346fced0060df567b55096
wireshark-gnome-0.99.5-EL3.1.s390.rpm
File outdated by:  RHSA-2008:0059
    ec4f0a3279698d6e470f64c829e0afcb
 
s390x:
wireshark-0.99.5-EL3.1.s390x.rpm
File outdated by:  RHSA-2008:0059
    97340db1628c7b88e87e3a55fe11fc31
wireshark-gnome-0.99.5-EL3.1.s390x.rpm
File outdated by:  RHSA-2008:0059
    d222da5178b1398b758d8e15e3388fb8
 
x86_64:
wireshark-0.99.5-EL3.1.x86_64.rpm
File outdated by:  RHSA-2008:0059
    9cb61c5d8b95d8f83be1625deac47149
wireshark-gnome-0.99.5-EL3.1.x86_64.rpm
File outdated by:  RHSA-2008:0059
    aad3f0b52b39619959761586c374821b
 
Red Hat Enterprise Linux AS (v. 4)

SRPMS:
wireshark-0.99.5-EL4.1.src.rpm
File outdated by:  RHSA-2008:0058
    f9a8dcaf414f499920f5199dbbc28ca1
 
IA-32:
wireshark-0.99.5-EL4.1.i386.rpm
File outdated by:  RHSA-2008:0058
    30bd4ee2fb228d263ed311f658f6dda7
wireshark-gnome-0.99.5-EL4.1.i386.rpm
File outdated by:  RHSA-2008:0058
    1882b5a6ebe75341c5487a6475366b44
 
IA-64:
wireshark-0.99.5-EL4.1.ia64.rpm
File outdated by:  RHSA-2008:0058
    3949dc851c7701f0a5931d54d884470a
wireshark-gnome-0.99.5-EL4.1.ia64.rpm
File outdated by:  RHSA-2008:0058
    0ed02fc9f811c94b3cc348bf6b27c6a5
 
PPC:
wireshark-0.99.5-EL4.1.ppc.rpm
File outdated by:  RHSA-2008:0058
    f5d27f3b28bfe94b3fe4b2da9f99dd6e
wireshark-gnome-0.99.5-EL4.1.ppc.rpm
File outdated by:  RHSA-2008:0058
    6287732afaf422b7010907af1f5a2658
 
s390:
wireshark-0.99.5-EL4.1.s390.rpm
File outdated by:  RHSA-2008:0058
    6b1f7d80530974ec11d2f978f295beaf
wireshark-gnome-0.99.5-EL4.1.s390.rpm
File outdated by:  RHSA-2008:0058
    8218d325de4fd6a3438ffde70433444b
 
s390x:
wireshark-0.99.5-EL4.1.s390x.rpm
File outdated by:  RHSA-2008:0058
    aff316b3f3be3641b77008c327ff372f
wireshark-gnome-0.99.5-EL4.1.s390x.rpm
File outdated by:  RHSA-2008:0058
    1b74eb3df654513a225860f29eb69085
 
x86_64:
wireshark-0.99.5-EL4.1.x86_64.rpm
File outdated by:  RHSA-2008:0058
    9c952637d690e2b1bc56d0b7dee10037
wireshark-gnome-0.99.5-EL4.1.x86_64.rpm
File outdated by:  RHSA-2008:0058
    a7640db353e1b6ed82bfed2f6b69aa80
 
Red Hat Enterprise Linux Desktop (v. 5 client)

SRPMS:
wireshark-0.99.5-1.el5.src.rpm
File outdated by:  RHSA-2008:0058
    9d82bbd74ce9e46b5b029ce6c888fca1
 
IA-32:
wireshark-0.99.5-1.el5.i386.rpm
File outdated by:  RHSA-2008:0058
    7b122e6649aae58047ba0ba52e95b098
 
x86_64:
wireshark-0.99.5-1.el5.x86_64.rpm
File outdated by:  RHSA-2008:0058
    c694b461024223123dcccc99e36fbcfe
 
Red Hat Enterprise Linux ES (v. 2.1)

SRPMS:
wireshark-0.99.5-AS21.3.src.rpm     910c560ed0a96d5d421fdd4dc960e58b
 
IA-32:
wireshark-0.99.5-AS21.3.i386.rpm     b77cfcda3db81ff075eacc7f6b8da85d
wireshark-gnome-0.99.5-AS21.3.i386.rpm     3ba3d22aba95c5738b35bce0ff61be23
 
Red Hat Enterprise Linux ES (v. 3)

SRPMS:
wireshark-0.99.5-EL3.1.src.rpm
File outdated by:  RHSA-2008:0059
    c7255e4fa8af9ea9e6f8e1ee725e99e0
 
IA-32:
wireshark-0.99.5-EL3.1.i386.rpm
File outdated by:  RHSA-2008:0059
    34ed0d94e523c71598f686e2cd1f12a7
wireshark-gnome-0.99.5-EL3.1.i386.rpm
File outdated by:  RHSA-2008:0059
    51c2537226e42b98628130f8bd7c59ae
 
IA-64:
wireshark-0.99.5-EL3.1.ia64.rpm
File outdated by:  RHSA-2008:0059
    daf4a17f63e344828751e80281ebb877
wireshark-gnome-0.99.5-EL3.1.ia64.rpm
File outdated by:  RHSA-2008:0059
    3c80210a835d9daa2001a87b61bfa94f
 
x86_64:
wireshark-0.99.5-EL3.1.x86_64.rpm
File outdated by:  RHSA-2008:0059
    9cb61c5d8b95d8f83be1625deac47149
wireshark-gnome-0.99.5-EL3.1.x86_64.rpm
File outdated by:  RHSA-2008:0059
    aad3f0b52b39619959761586c374821b
 
Red Hat Enterprise Linux ES (v. 4)

SRPMS:
wireshark-0.99.5-EL4.1.src.rpm
File outdated by:  RHSA-2008:0058
    f9a8dcaf414f499920f5199dbbc28ca1
 
IA-32:
wireshark-0.99.5-EL4.1.i386.rpm
File outdated by:  RHSA-2008:0058
    30bd4ee2fb228d263ed311f658f6dda7
wireshark-gnome-0.99.5-EL4.1.i386.rpm
File outdated by:  RHSA-2008:0058
    1882b5a6ebe75341c5487a6475366b44
 
IA-64:
wireshark-0.99.5-EL4.1.ia64.rpm
File outdated by:  RHSA-2008:0058
    3949dc851c7701f0a5931d54d884470a
wireshark-gnome-0.99.5-EL4.1.ia64.rpm
File outdated by:  RHSA-2008:0058
    0ed02fc9f811c94b3cc348bf6b27c6a5
 
x86_64:
wireshark-0.99.5-EL4.1.x86_64.rpm
File outdated by:  RHSA-2008:0058
    9c952637d690e2b1bc56d0b7dee10037
wireshark-gnome-0.99.5-EL4.1.x86_64.rpm
File outdated by:  RHSA-2008:0058
    a7640db353e1b6ed82bfed2f6b69aa80
 
Red Hat Enterprise Linux WS (v. 2.1)

SRPMS:
wireshark-0.99.5-AS21.3.src.rpm     910c560ed0a96d5d421fdd4dc960e58b
 
IA-32:
wireshark-0.99.5-AS21.3.i386.rpm     b77cfcda3db81ff075eacc7f6b8da85d
wireshark-gnome-0.99.5-AS21.3.i386.rpm     3ba3d22aba95c5738b35bce0ff61be23
 
Red Hat Enterprise Linux WS (v. 3)

SRPMS:
wireshark-0.99.5-EL3.1.src.rpm
File outdated by:  RHSA-2008:0059
    c7255e4fa8af9ea9e6f8e1ee725e99e0
 
IA-32:
wireshark-0.99.5-EL3.1.i386.rpm
File outdated by:  RHSA-2008:0059
    34ed0d94e523c71598f686e2cd1f12a7
wireshark-gnome-0.99.5-EL3.1.i386.rpm
File outdated by:  RHSA-2008:0059
    51c2537226e42b98628130f8bd7c59ae
 
IA-64:
wireshark-0.99.5-EL3.1.ia64.rpm
File outdated by:  RHSA-2008:0059
    daf4a17f63e344828751e80281ebb877
wireshark-gnome-0.99.5-EL3.1.ia64.rpm
File outdated by:  RHSA-2008:0059
    3c80210a835d9daa2001a87b61bfa94f
 
x86_64:
wireshark-0.99.5-EL3.1.x86_64.rpm
File outdated by:  RHSA-2008:0059
    9cb61c5d8b95d8f83be1625deac47149
wireshark-gnome-0.99.5-EL3.1.x86_64.rpm
File outdated by:  RHSA-2008:0059
    aad3f0b52b39619959761586c374821b
 
Red Hat Enterprise Linux WS (v. 4)

SRPMS:
wireshark-0.99.5-EL4.1.src.rpm
File outdated by:  RHSA-2008:0058
    f9a8dcaf414f499920f5199dbbc28ca1
 
IA-32:
wireshark-0.99.5-EL4.1.i386.rpm
File outdated by:  RHSA-2008:0058
    30bd4ee2fb228d263ed311f658f6dda7
wireshark-gnome-0.99.5-EL4.1.i386.rpm
File outdated by:  RHSA-2008:0058
    1882b5a6ebe75341c5487a6475366b44
 
IA-64:
wireshark-0.99.5-EL4.1.ia64.rpm
File outdated by:  RHSA-2008:0058
    3949dc851c7701f0a5931d54d884470a
wireshark-gnome-0.99.5-EL4.1.ia64.rpm
File outdated by:  RHSA-2008:0058
    0ed02fc9f811c94b3cc348bf6b27c6a5
 
x86_64:
wireshark-0.99.5-EL4.1.x86_64.rpm
File outdated by:  RHSA-2008:0058
    9c952637d690e2b1bc56d0b7dee10037
wireshark-gnome-0.99.5-EL4.1.x86_64.rpm
File outdated by:  RHSA-2008:0058
    a7640db353e1b6ed82bfed2f6b69aa80
 
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor

SRPMS:
wireshark-0.99.5-AS21.3.src.rpm     910c560ed0a96d5d421fdd4dc960e58b
 
IA-64:
wireshark-0.99.5-AS21.3.ia64.rpm     ec1c1946804e2bff049c49283c93e51b
wireshark-gnome-0.99.5-AS21.3.ia64.rpm     a38f01c33c7d7aaa2b297378384688b4
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

225689 - CVE-2007-0456 Multiple Wireshark issues (CVE-2007-0457, CVE-2007-0458, CVE-2007-0459)
225781 - CVE-2007-0456 Multiple Wireshark issues (CVE-2007-0457, CVE-2007-0458, CVE-2007-0459)


References



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/