Bugzilla – Full Text Bug Listing |
Summary: | VUL-1: CVE-2017-7704: wireshark: DOF dissector could go into an infinite loop (wnpa-sec-2017-17) | ||
---|---|---|---|
Product: | [Novell Products] SUSE Security Incidents | Reporter: | Alexander Bergmann <abergmann> |
Component: | Incidents | Assignee: | Lingshan Zhu <lszhu> |
Status: | RESOLVED FIXED | QA Contact: | Security Team bot <security-team> |
Severity: | Normal | ||
Priority: | P4 - Low | CC: | abergmann, smash_bz |
Version: | unspecified | ||
Target Milestone: | --- | ||
Hardware: | Other | ||
OS: | Other | ||
URL: | https://smash.suse.de/issue/183584/ | ||
Whiteboard: | CVSSv2:SUSE:CVE-2017-7704:7.1:(AV:N/AC:M/Au:N/C:N/I:N/A:C) CVSSv3:SUSE:CVE-2017-7704:7.5:(AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H) maint:planned:update | ||
Found By: | Security Response Team | Services Priority: | |
Business Priority: | Blocker: | --- | |
Marketing QA Status: | --- | IT Deployment: | --- |
Description
Alexander Bergmann
2017-04-13 07:51:18 UTC
This is an autogenerated message for OBS integration: This bug (1033940) was mentioned in https://build.opensuse.org/request/show/487927 Factory / wireshark https://build.opensuse.org/request/show/487928 42.2 / wireshark openSUSE-SU-2017:1087-1: An update that fixes 10 vulnerabilities is now available. Category: security (moderate) Bug References: 1033936,1033937,1033938,1033939,1033940,1033941,1033942,1033943,1033944,1033945 CVE References: CVE-2017-7700,CVE-2017-7701,CVE-2017-7702,CVE-2017-7703,CVE-2017-7704,CVE-2017-7705,CVE-2017-7745,CVE-2017-7746,CVE-2017-7747,CVE-2017-7748 Sources used: openSUSE Leap 42.2 (src): wireshark-2.2.6-14.3.1 resolved by the latest update SUSE-SU-2017:1174-1: An update that solves 23 vulnerabilities and has two fixes is now available. Category: security (moderate) Bug References: 1002981,1010735,1010740,1010752,1010754,1010911,1021739,1025913,1027998,1033936,1033937,1033938,1033939,1033940,1033941,1033942,1033943,1033944,1033945,998761,998762,998763,998800,998963,998964 CVE References: CVE-2016-7175,CVE-2016-7176,CVE-2016-7177,CVE-2016-7178,CVE-2016-7179,CVE-2016-7180,CVE-2016-9373,CVE-2016-9374,CVE-2016-9375,CVE-2016-9376,CVE-2017-5596,CVE-2017-5597,CVE-2017-6014,CVE-2017-7700,CVE-2017-7701,CVE-2017-7702,CVE-2017-7703,CVE-2017-7704,CVE-2017-7705,CVE-2017-7745,CVE-2017-7746,CVE-2017-7747,CVE-2017-7748 Sources used: SUSE Linux Enterprise Software Development Kit 11-SP4 (src): wireshark-2.0.12-36.1 SUSE Linux Enterprise Server 11-SP4 (src): wireshark-2.0.12-36.1 SUSE Linux Enterprise Debuginfo 11-SP4 (src): wireshark-2.0.12-36.1 SUSE-SU-2017:1442-1: An update that solves 24 vulnerabilities and has four fixes is now available. Category: security (moderate) Bug References: 1002981,1010735,1010740,1010752,1010754,1010911,1021739,1025913,1026507,1027692,1027998,1033936,1033937,1033938,1033939,1033940,1033941,1033942,1033943,1033944,1033945,990856,998761,998762,998763,998800,998963,998964 CVE References: CVE-2016-6354,CVE-2016-7175,CVE-2016-7176,CVE-2016-7177,CVE-2016-7178,CVE-2016-7179,CVE-2016-7180,CVE-2016-9373,CVE-2016-9374,CVE-2016-9375,CVE-2016-9376,CVE-2017-5596,CVE-2017-5597,CVE-2017-6014,CVE-2017-7700,CVE-2017-7701,CVE-2017-7702,CVE-2017-7703,CVE-2017-7704,CVE-2017-7705,CVE-2017-7745,CVE-2017-7746,CVE-2017-7747,CVE-2017-7748 Sources used: SUSE Linux Enterprise Software Development Kit 12-SP2 (src): wireshark-2.2.6-44.3 SUSE Linux Enterprise Software Development Kit 12-SP1 (src): wireshark-2.2.6-44.3 SUSE Linux Enterprise Server for Raspberry Pi 12-SP2 (src): wireshark-2.2.6-44.3 SUSE Linux Enterprise Server 12-SP2 (src): wireshark-2.2.6-44.3 SUSE Linux Enterprise Server 12-SP1 (src): wireshark-2.2.6-44.3 SUSE Linux Enterprise Desktop 12-SP2 (src): wireshark-2.2.6-44.3 SUSE Linux Enterprise Desktop 12-SP1 (src): wireshark-2.2.6-44.3 |