~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
Candidate: CVE-2013-1585
PublicDate: 2013-02-02
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1585
 http://www.openwall.com/lists/oss-security/2013/01/30
 http://www.wireshark.org/security/wnpa-sec-2013-04.html
 http://www.openwall.com/lists/oss-security/2013/01/31/2
Description:
 epan/tvbuff.c in Wireshark 1.6.x before 1.6.13 and 1.8.x before 1.8.5 does
 not properly validate certain length values for the MS-MMC dissector, which
 allows remote attackers to cause a denial of service (application crash)
 via a malformed packet.
Ubuntu-Description:
Notes:
Bugs:
 https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=8112
Priority: medium
Discovered-by:
Assigned-to:

Patches_wireshark:
upstream_wireshark: released (1.6.13,1.8.5)
hardy_wireshark: ignored (reached end-of-life)
lucid_wireshark: ignored (reached end-of-life)
oneiric_wireshark: ignored (reached end-of-life)
precise_wireshark: ignored (reached end-of-life)
precise/esm_wireshark: DNE (precise was needed)
quantal_wireshark: ignored (reached end-of-life)
raring_wireshark: ignored (reached end-of-life)
saucy_wireshark: ignored (reached end-of-life)
trusty_wireshark: not-affected (1.10.6-1)
utopic_wireshark: not-affected (1.12.0+git+4fab41a1-1)
vivid_wireshark: not-affected (1.12.1+g01b65bf-2)
vivid/stable-phone-overlay_wireshark: DNE
vivid/ubuntu-core_wireshark: DNE
wily_wireshark: not-affected (1.12.1+g01b65bf-2)
xenial_wireshark: not-affected (1.12.1+g01b65bf-2)
yakkety_wireshark: not-affected (1.12.1+g01b65bf-2)
zesty_wireshark: not-affected (1.12.1+g01b65bf-2)
devel_wireshark: not-affected (1.12.1+g01b65bf-2)