Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <500E3D65.4090208@redhat.com>
Date: Tue, 24 Jul 2012 11:45:01 +0530
From: Huzaifa Sidhpurwala <huzaifas@...hat.com>
To: oss-security@...ts.openwall.com
Subject: Re: Wireshark before 1.8.1 (etc.) CVE-2012-4048 CVE-2012-4049

On 07/24/2012 10:14 AM, cve-assign@...re.org wrote:
> CVE-2012-4048  http://www.wireshark.org/security/wnpa-sec-2012-11.html
> CVE-2012-4049  http://www.wireshark.org/security/wnpa-sec-2012-12.html
> 
> (We've already asked the upstream vendor to remove the bug 7221
> reference from wnpa-sec-2012-12, and insert the correct bug number.)
> 

Combing through the wireshark commits, the following seems to be the
correct bug. (But do wait for upstream)

https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=7209


-- 
Huzaifa Sidhpurwala / Red Hat Security Response Team


Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.