CESA-2011:0013 -- centos 4 x86_64 wiresharkID: oval:org.secpod.oval:def:200198 | Date: (C)2012-01-31 (M)2022-11-04 |
Class: PATCH | Family: unix |
Wireshark is a program for monitoring network traffic. Wireshark was previously known as Ethereal. An array index error, leading to a stack-based buffer overflow, was found in the Wireshark ENTTEC dissector. If Wireshark read a malformed packet off a network or opened a malicious dump file, it could crash or, possibly, execute arbitrary code as the user running Wireshark. Users of Wireshark should upgrade to these updated packages, which contain a backported patch to correct this issue. All running instances of Wireshark must be restarted for the update to take effect.