Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Fedora Local Security Checks >> Fedora Core 5 2006-1141: wireshark


Vulnerability Assessment Details

Fedora Core 5 2006-1141: wireshark

Vulnerability Assessment Summary
Check for the version of the wireshark package

Detailed Explanation for this Vulnerability Assessment

The remote host is missing the patch for the advisory FEDORA-2006-1141 (wireshark).

Wireshark is a network traffic analyzer for Unix-ish operating systems.

This package lays base for libpcap, a packet capture and filtering
library, contains command-line utilities, contains tests and
documentation for wireshark. A graphical user interface is packaged
separately to GTK+ package.



Update information :

* Wed Nov 1 2006 Radek Vok├┬íl 0.99.4-1.fc5
- upgrade to 0.99.4, fixes multiple security issues
- use dist tag
- CVE-2006-5468 - The HTTP dissector could dereference a null pointer.
- CVE-2006-5469 - The WBXML dissector could crash.
- CVE-2006-5470 - The LDAP dissector (and possibly others) could crash.
- CVE-2006-4805 - Basic DoS, The XOT dissector could attempt to allocate a larg
e amount of memory and crash.
- CVE-2006-4574 - Single byte \0 overflow written onto the heap


Solution : Get the newest Fedora Updates
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2007 Tenable Network Security

Cables, Connectors

IBM eServer xSeries 226 Server (Intel Pentium 4 620 HT, 2.80GHz, 5GB)
$225.0
IBM eServer xSeries 226 Server (Intel Pentium 4 620 HT, 2.80GHz, 5GB) pictureIBM 8202-E4C Power 720 Express (AIX) W/ Power7, 3.0GHz, 6-Core, 128GB Mem Server
$1000.0
IBM 8202-E4C Power 720 Express (AIX) W/ Power7, 3.0GHz, 6-Core, 128GB Mem Server pictureIBM System x3100 M4 Server CPU / Processor Cooling Heatsink 81Y7943 69Y5420
$81.16
IBM System x3100 M4 Server CPU / Processor Cooling Heatsink 81Y7943 69Y5420 picture2GB IBM 12R6446 PC2-4200R 533MHz Registered 276-Pin DDR2 ECC Server Memory RAM
$20.28
2GB IBM 12R6446 PC2-4200R 533MHz Registered 276-Pin DDR2 ECC Server Memory RAM picture


Discussions

No Discussions have been posted on this vulnerability.