_______________________________________________________________________
Package : wireshark
Date : April 9, 2009
Affected: 2008.1, 2009.0, Corporate 4.0
_______________________________________________________________________
Problem Description:
Multiple vulnerabilities has been identified and corrected in
wireshark:
o The PROFINET dissector was vulnerable to a format string overflow
(CVE-2009-1210).
o The Check Point High-Availability Protocol (CPHAP) dissecto could
crash (CVE-2009-1268).
o Wireshark could crash while loading a Tektronix .rf5 file
(CVE-2009-1269).
This update provides Wireshark 1.0.7, which is not vulnerable to
these issues.
_______________________________________________________________________
References:
http://cve.mitre.org/cgi-bin/cvename.cg ... -2009-1210
http://cve.mitre.org/cgi-bin/cvename.cg ... -2009-1268
http://cve.mitre.org/cgi-bin/cvename.cg ... -2009-1269
http://www.wireshark.org/security/wnpa-sec-2009-02.html
_______________________________________________________________________