The following vulnerabilities have been fixed: • wnpa-sec-2020-09[1] GVCP dissector infinite loop. Bug 16029[2]. CVE-2020-15466[3]. [1] https://www.wireshark.org/security/wnpa-sec-2020-09 [2] https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=16029 [3] https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15466
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=8b4f7a0189a7403613443bb7b514ba9334c2b616 commit 8b4f7a0189a7403613443bb7b514ba9334c2b616 Author: Jeroen Roovers <jer@gentoo.org> AuthorDate: 2020-07-01 21:19:20 +0000 Commit: Jeroen Roovers <jer@gentoo.org> CommitDate: 2020-07-01 21:21:31 +0000 net-analyzer/wireshark: Version 3.2.5 Package-Manager: Portage-2.3.103, Repoman-2.3.23 Bug: https://bugs.gentoo.org/730414 Signed-off-by: Jeroen Roovers <jer@gentoo.org> net-analyzer/wireshark/Manifest | 1 + net-analyzer/wireshark/wireshark-3.2.5.ebuild | 261 ++++++++++++++++++++++++++ 2 files changed, 262 insertions(+)
ppc64 stable
amd64 stable
arm stable
x86 stable. Maintainer(s), please cleanup.
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=18f8cd496417f7e8f41dfdbf68e9907810e9fb6b commit 18f8cd496417f7e8f41dfdbf68e9907810e9fb6b Author: Jeroen Roovers <jer@gentoo.org> AuthorDate: 2020-07-05 14:01:32 +0000 Commit: Jeroen Roovers <jer@gentoo.org> CommitDate: 2020-07-05 14:01:46 +0000 net-analyzer/wireshark: Old Package-Manager: Portage-2.3.103, Repoman-2.3.23 Bug: https://bugs.gentoo.org/show_bug.cgi?id=730414 Signed-off-by: Jeroen Roovers <jer@gentoo.org> net-analyzer/wireshark/Manifest | 1 - net-analyzer/wireshark/wireshark-3.2.4.ebuild | 261 -------------------------- 2 files changed, 262 deletions(-)
This issue was resolved and addressed in GLSA 202007-13 at https://security.gentoo.org/glsa/202007-13 by GLSA coordinator Sam James (sam_c).