Bugzilla – Bug 1207668
VUL-0: CVE-2023-0416: wireshark: GNW dissector crash
Last modified: 2023-02-16 07:19:56 UTC
CVE-2023-0416 GNW dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-0416 https://www.cve.org/CVERecord?id=CVE-2023-0416 https://gitlab.com/wireshark/wireshark/-/issues/18779 https://www.wireshark.org/security/wnpa-sec-2023-04.html https://gitlab.com/gitlab-org/cves/-/blob/master/2023/CVE-2023-0416.json
updated the pending submission with the references
SUSE-SU-2023:0343-1: An update that solves 7 vulnerabilities and has one errata is now available. Category: security (important) Bug References: 1206189,1207447,1207663,1207664,1207665,1207667,1207668,1207669 CVE References: CVE-2022-4345,CVE-2023-0411,CVE-2023-0412,CVE-2023-0413,CVE-2023-0415,CVE-2023-0416,CVE-2023-0417 JIRA References: Sources used: openSUSE Leap 15.4 (src): wireshark-3.6.11-150000.3.83.1 SUSE Manager Server 4.2 (src): wireshark-3.6.11-150000.3.83.1 SUSE Manager Retail Branch Server 4.2 (src): wireshark-3.6.11-150000.3.83.1 SUSE Manager Proxy 4.2 (src): wireshark-3.6.11-150000.3.83.1 SUSE Linux Enterprise Server for SAP 15-SP3 (src): wireshark-3.6.11-150000.3.83.1 SUSE Linux Enterprise Server for SAP 15-SP2 (src): wireshark-3.6.11-150000.3.83.1 SUSE Linux Enterprise Server for SAP 15-SP1 (src): wireshark-3.6.11-150000.3.83.1 SUSE Linux Enterprise Server 15-SP3-LTSS (src): wireshark-3.6.11-150000.3.83.1 SUSE Linux Enterprise Server 15-SP2-LTSS (src): wireshark-3.6.11-150000.3.83.1 SUSE Linux Enterprise Server 15-SP1-LTSS (src): wireshark-3.6.11-150000.3.83.1 SUSE Linux Enterprise Realtime Extension 15-SP3 (src): wireshark-3.6.11-150000.3.83.1 SUSE Linux Enterprise Module for Desktop Applications 15-SP4 (src): wireshark-3.6.11-150000.3.83.1 SUSE Linux Enterprise Module for Basesystem 15-SP4 (src): wireshark-3.6.11-150000.3.83.1 SUSE Linux Enterprise High Performance Computing 15-SP3-LTSS (src): wireshark-3.6.11-150000.3.83.1 SUSE Linux Enterprise High Performance Computing 15-SP3-ESPOS (src): wireshark-3.6.11-150000.3.83.1 SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS (src): wireshark-3.6.11-150000.3.83.1 SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS (src): wireshark-3.6.11-150000.3.83.1 SUSE Enterprise Storage 7.1 (src): wireshark-3.6.11-150000.3.83.1 SUSE Enterprise Storage 7 (src): wireshark-3.6.11-150000.3.83.1 SUSE Enterprise Storage 6 (src): wireshark-3.6.11-150000.3.83.1 SUSE CaaS Platform 4.0 (src): wireshark-3.6.11-150000.3.83.1 NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.