-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Wed, 01 Mar 2011 01:17:41 +0100 Source: wireshark Binary: wireshark-common wireshark tshark wireshark-dev wireshark-dbg Architecture: i386 Version: 1.2.11-6+squeeze1 Distribution: squeeze-security Urgency: high Maintainer: i386 Build Daemon Changed-By: Balint Reczey Description: tshark - network traffic analyzer - console version wireshark - network traffic analyzer - GTK+ version wireshark-common - network traffic analyzer - common files wireshark-dbg - network traffic analyzer - debug symbols wireshark-dev - network traffic analyzer - development tools Closes: 613202 Changes: wireshark (1.2.11-6+squeeze1) stable-security; urgency=high . * security fixes from Wireshark 1.2.15: - Huzaifa Sidhpurwala of the Red Hat Security Response Team discovered that Wireshark could free an uninitialized pointer while reading a malformed pcap-ng file. (CVE-2011-0538) (Closes: #613202) - Huzaifa Sidhpurwala of the Red Hat Security Response Team discovered that a large packet length in a pcap-ng file could crash Wireshark - Wireshark could overflow a buffer while reading a Nokia DCT3 trace file. (CVE-2011-0713) - joernchen of Phenoelit discovered that the LDAP and SMB dissectors could overflow the stack. - Xiaopeng Zhang of Fortinet's Fortiguard Labs discovered that large LDAP Filter strings can consume excessive amounts of memory. Checksums-Sha1: 2a05087dce2c793deab4669dc90c6a99d8cd3bdc 11706824 wireshark-common_1.2.11-6+squeeze1_i386.deb 5194d51d4be7dc9f6f8f4544d98bb0dec0da6997 739144 wireshark_1.2.11-6+squeeze1_i386.deb 3bca4651a524760d2bd88280c451fc63d3bae02c 128436 tshark_1.2.11-6+squeeze1_i386.deb 8ea8c2a2854a4f7d6b126105a0a5225529151807 794808 wireshark-dev_1.2.11-6+squeeze1_i386.deb 53a73daa9ba33c03c37d298cdfeeb2724767a733 14687870 wireshark-dbg_1.2.11-6+squeeze1_i386.deb Checksums-Sha256: 4490aa1c7c167109fff472751c687840209609c311fe1d1e412bcaab2ebca564 11706824 wireshark-common_1.2.11-6+squeeze1_i386.deb 7d535b0243c8cb62c5728965a48041c3af4eb1931bcd252421523cee0dd7d653 739144 wireshark_1.2.11-6+squeeze1_i386.deb efb07b663f7bf002c6f784c5f5d2d392c69a2ac5bfeef510cca0d747bcf27e12 128436 tshark_1.2.11-6+squeeze1_i386.deb c4020a2a5d7add1a0c2c66e854ee4be057ace9c0b5f7cea512ed4ac4f13257c7 794808 wireshark-dev_1.2.11-6+squeeze1_i386.deb 8c34351a01c18261216b769ed202ad24ffbfe471ff7375afcf5f42ed5a46bf63 14687870 wireshark-dbg_1.2.11-6+squeeze1_i386.deb Files: 70974a0999359cb669b325a4a92c3401 11706824 net optional wireshark-common_1.2.11-6+squeeze1_i386.deb a4d4a7d6a0524c9bfd7b9a2e4a879331 739144 net optional wireshark_1.2.11-6+squeeze1_i386.deb d48344c68782960026c07f41e56ced1d 128436 net optional tshark_1.2.11-6+squeeze1_i386.deb ec9ffc66a811d4c1b828be0cd2ff4fa1 794808 devel optional wireshark-dev_1.2.11-6+squeeze1_i386.deb b0f28ab2a1036b0ceb0037b75d95b1f4 14687870 debug extra wireshark-dbg_1.2.11-6+squeeze1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) iEYEARECAAYFAk2GIHsACgkQXm3vHE4uylo+RgCgpb2tH7cMcVbADK9Yavs59YQ6 //YAnA8MxrUoTPSt968e2LK+1H+FsZfk =eYCx -----END PGP SIGNATURE-----