[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add preliminary information on new wireshark CVEs

Salvatore Bonaccorso carnil at debian.org
Wed Apr 4 10:01:27 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
287a4e7c by Salvatore Bonaccorso at 2018-04-04T11:01:04+02:00
Add preliminary information on new wireshark CVEs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -1,41 +1,99 @@
 CVE-2018-9274 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ui/failure_message.c ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14489
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=211845aba4794720ae265c782cdffddae54a3e7a
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=f38e895dfc0d97bce64f73ce99df706911d9aa07
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9273 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14488
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=1f8f1456f1e73b6c09e50a64749e43413ac12df7
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9272 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14487
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=6e3b90824a82724f445a0374e99f0b76e4cf5e8b
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9271 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14486
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=5b0228945dc74ee82d2ab4a4e7af2bdfe7b75910
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9270 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, epan/oids.c has a ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14485
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=0fbc50f9b9219be54d6db47f04b65af19696a7c7
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9269 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14484
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=e19aba33026212cbe000ece633adf14d109489fa
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9268 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14483
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=c69d710d2bf39fe633800db65efddf55701131b6
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9267 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14482
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=8ed057f7faa709dbde34b91f0715a957837f74d9
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9266 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14481
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=9d3714e767cb104dcfa1647935fa5960b16bb8e1
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9265 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14480
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=b12cc581cd4878d74b6116ca02c7dbe650c1f242
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9264 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the ADB dissector ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14460
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=0290a62be0fca8da9bb190f59dc1fe26c1d65024
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-16.html
 CVE-2018-9263 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the Kerberos dissector ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14576
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=4fe65168fd0de81306710330aa414f10f53cbdf0
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-23.html
 CVE-2018-9262 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the VLAN dissector ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14469
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=f05c3b91f9571210b86576ee6284e71a3306109d
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-19.html
 CVE-2018-9261 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the NBAP dissector ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14471
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=66bc372716e04d6a8afdf6712583c9b5d11fee55
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-18.html
 CVE-2018-9260 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the IEEE 802.15.4 ...)
-	TODO: check
+	- wirehsark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14468
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=14d6f717d8ea27688af48532edb1d29f502ea8f0
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-17.html
 CVE-2018-9259 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the MP4 dissector ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=13777
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=2113179835b37549f245ac7c05ff2b96276893e4
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-15.html
 CVE-2018-9258 (In Wireshark 2.4.0 to 2.4.5, the TCP dissector could crash. This was ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14472
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=2d4695de1477df60b0188fd581c0c279db601978
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-21.html
 CVE-2018-9257 (In Wireshark 2.4.0 to 2.4.5, the CQL dissector could go into an ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14530
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=d7a9501b0439a5dbf24016a95b4896170d789dc2
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-22.html
 CVE-2018-9256 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the LWAPP dissector ...)
-	TODO: check
+	- wireshark <unfixed>
+	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14467
+	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=dac48f148538c706c446e5105d84ebcb54587528
+	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-20.html
 CVE-2018-9255
 	RESERVED
 CVE-2018-9254



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/287a4e7c35e47fc4b2222e9bee846f2a8e2b5817

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/287a4e7c35e47fc4b2222e9bee846f2a8e2b5817
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180404/fb9afa99/attachment.html>


More information about the debian-security-tracker-commits mailing list