Lucene search

K
redhatRedHatRHSA-2006:0726
HistoryNov 09, 2006 - 12:00 a.m.

(RHSA-2006:0726) Moderate: wireshark security update

2006-11-0900:00:00
access.redhat.com
12

EPSS

0.022

Percentile

89.7%

Wireshark is a program for monitoring network traffic.

Several flaws were found in Wireshark’s HTTP, WBXML, LDAP, and XOT protocol
dissectors. Wireshark could crash or stop responding if it read a malformed
packet off the network. (CVE-2006-4805, CVE-2006-5468, CVE-2006-5469,
CVE-2006-5740)

A single NULL byte heap based buffer overflow was found in Wireshark’s MIME
Multipart dissector. Wireshark could crash or possibly execute arbitrary
arbitrary code as the user running Wireshark. (CVE-2006-4574)

Users of Wireshark should upgrade to these updated packages containing
Wireshark version 0.99.4, which is not vulnerable to these issues.