<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "http://bugs.gentoo.org/bugzilla.dtd">

<bugzilla version="2.22.7"
          urlbase="http://bugs.gentoo.org/"
          maintainer="bugzilla@gentoo.org"
>

    <bug>
          <bug_id>236515</bug_id>
          <alias>CVE-2008-3146</alias>
          <creation_ts>2008-09-02 22:33 0000</creation_ts>
          <short_desc>net-analyzer/wireshark &lt;1.0.3 NCP dissector DoS (CVE-2008-{3146,3932,3933,3934}))</short_desc>
          <delta_ts>2008-09-25 21:18:41 0000</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>Gentoo Security</product>
          <component>Vulnerabilities</component>
          <version>unspecified</version>
          <rep_platform>All</rep_platform>
          <op_sys>Linux</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          <bug_file_loc>http://www.wireshark.org/security/wnpa-sec-2008-05.html</bug_file_loc>
          <status_whiteboard>B3 [glsa]</status_whiteboard>
          
          <priority>P2</priority>
          <bug_severity>normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          
          <everconfirmed>1</everconfirmed>
          <reporter>rbu@gentoo.org</reporter>
          <assigned_to>security@gentoo.org</assigned_to>
          <cc>7v5w7go9ub0o@gmail.com</cc>
    
    <cc>netmon@gentoo.org</cc>

      

      
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2008-09-02 22:33:12 0000</bug_when>
            <thetext>CVE-2008-3146 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3146):
  Unspecified vulnerability in Wireshark and Ethereal on SUSE Linux allows
  attackers to cause a denial of service (application crash) or possibly
  execute arbitrary code via unknown vectors.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2008-09-02 22:34:15 0000</bug_when>
            <thetext>I inquired upstream on a release date.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2008-09-03 08:33:53 0000</bug_when>
            <thetext>replied: &quot;It should be out in the next couple of days.&quot;</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2008-09-04 23:11:23 0000</bug_when>
            <thetext>It&apos;s out. To quote:

Wireshark 1.0.3 fixes the following vulnerabilities:

    * The NCP dissector was susceptible to a number of problems, including buffer overflows and an infinite loop. (Bug 2675)
      Versions affected: 0.9.7 to 1.0.2
    * Wireshark could crash while uncompressing zlib-compressed packet data. (Bug 2649)
      Versions affected: 0.10.14 to 1.0.2
    * Wireshark could crash while reading a Tektronix .rf5 file.
      Versions affected: 0.99.6 to 1.0.2 
</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>carlo@gentoo.org</who>
            <bug_when>2008-09-07 15:07:04 0000</bug_when>
            <thetext>*** Bug 236978 has been marked as a duplicate of this bug. ***</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>pva@gentoo.org</who>
            <bug_when>2008-09-10 06:04:58 0000</bug_when>
            <thetext>wireshark-1.0.3 was added to the tree. Arch teams, please, stabilize.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>jer@gentoo.org</who>
            <bug_when>2008-09-10 08:03:51 0000</bug_when>
            <thetext>Stable for HPPA.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>armin76@gentoo.org</who>
            <bug_when>2008-09-10 10:54:25 0000</bug_when>
            <thetext>alpha/ia64/sparc/x86 stable</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>ranger@gentoo.org</who>
            <bug_when>2008-09-10 13:19:03 0000</bug_when>
            <thetext>ppc and ppc64 stable</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>tester@gentoo.org</who>
            <bug_when>2008-09-10 14:15:33 0000</bug_when>
            <thetext>amd64 done.. all arches done... your turn to glsa (or not)</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2008-09-12 14:07:36 0000</bug_when>
            <thetext>CVE-2008-3932 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3932):
  Wireshark (formerly Ethereal) 0.9.7 through 1.0.2 allows attackers to
  cause a denial of service (hang) via a crafted NCP packet that
  triggers an infinite loop.

CVE-2008-3933 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3933):
  Wireshark (formerly Ethereal) 0.10.14 through 1.0.2 allows attackers
  to cause a denial of service (crash) via a packet with crafted
  zlib-compressed data that triggers an invalid read in the
  tvb_uncompress function.

CVE-2008-3934 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3934):
  Unspecified vulnerability in Wireshark (formerly Ethereal) 0.99.6
  through 1.0.2 allows attackers to cause a denial of service (crash)
  via a crafted Tektronix .rf5 file.
</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>py@gentoo.org</who>
            <bug_when>2008-09-18 21:56:28 0000</bug_when>
            <thetext>We already sent GLSA for this kind of stuff so... voting yes.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>keytoaster@gentoo.org</who>
            <bug_when>2008-09-22 12:39:18 0000</bug_when>
            <thetext>YES too, request filed.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>py@gentoo.org</who>
            <bug_when>2008-09-25 21:18:41 0000</bug_when>
            <thetext>GLSA 200809-17</thetext>
          </long_desc>
      
    </bug>

</bugzilla>