Protect yourself against future threats.
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 =========================================================================== AUSCERT Security Bulletin ASB-2012.0052 Wireshark 1.6.7 is now available 10 April 2012 =========================================================================== AusCERT Security Bulletin Summary --------------------------------- Product: Wireshark Operating System: UNIX variants (UNIX, Linux, OSX) Windows Impact/Access: Denial of Service -- Remote with User Interaction Resolution: Patch/Upgrade Member content until: Thursday, May 10 2012 OVERVIEW Multiple vulnerabilities have been patched in Wireshark 1.6.7. IMPACT The vendor has provided the following information: "o Wireshark could crash while reading SSL decryption keys on 64-bit Windows. o Malformed Packets H263-1996 (RFC2190). (Bug 6996) o Wireshark could crash while trying to open an rpcap: URL. (Bug 6922)" [1] MITIGATION Users should update to the latest version of Wireshark. [2] REFERENCES [1] Wireshark-announce: [Wireshark-announce] Wireshark 1.6.7 is now available http://www.wireshark.org/lists/wireshark-announce/201204/msg00000.html [2] Get Wireshark http://www.wireshark.org/download.html AusCERT has made every effort to ensure that the information contained in this document is accurate. However, the decision to use the information described is the responsibility of each user or organisation. The decision to follow or act on information or advice contained in this security bulletin is the responsibility of each user or organisation, and should be considered in accordance with your organisation's site policies and procedures. AusCERT takes no responsibility for consequences which may arise from following or acting on information or advice contained in this security bulletin. =========================================================================== Australian Computer Emergency Response Team The University of Queensland Brisbane Qld 4072 Internet Email: auscert@auscert.org.au Facsimile: (07) 3365 7031 Telephone: (07) 3365 4417 (International: +61 7 3365 4417) AusCERT personnel answer during Queensland business hours which are GMT+10:00 (AEST). On call after hours for member emergencies only. =========================================================================== -----BEGIN PGP SIGNATURE----- Comment: http://www.auscert.org.au/render.html?it=1967 iQIVAwUBT4PVS+4yVqjM2NGpAQJS2A//WBOTGePFdz2yHGKShpKU69ZpharER+Uj qUZhSoIANxwwOy4MtlVEm/dEcFtRRE6DZqVaxEJFVeLp3RnY6FzxKX+Pdi6ZxlB2 mAXiMicUOM0Crh6Vg2+iVGMCfhJPCpw17RXS0XeloSR7fGwFUqs/tVmHQg/IApDg QWZPz9nlk3rvep/LTtEKZao+Ymcu+5B0tPaIOSNpdtNvxCJ8Xo+SIk71yLh0y751 0Fai/CSmOOfP//dXcKBYwOfIfpyqrHI2LPlZTgxW4QIFbhORxEarF4D5nlLj3blP 31G8jSyreJdECZEE4rl5prnHkwnav7/ZztH0q8IYGVGUmOiXRLPn2Guhe2UYFw6/ NQ92dfX1PNNwFzBGl08P03LC0K196aIHJAWYl3VGUGnARyBOD4Y7iO436qxsTFvy MqEW55aX5NfNnetSeqhmrzPrTKKi6H/bZKJFd6sku1aEqHBoS9REnh+2ORSMAZfB cn0sVm/hXJRZVfJOO5ZTRUbKwoTvDK6SHqmycrcK80zv8MafrXu2fzpu2oJsGvQL sRrpXSHqI1XuDY7Mz6yLwGwFGQH7Drycuu5jnc2xykFIbuhJd3oQPvt4scG1Ijhz CVObu4jIB5+TC5cb57tmrkIOZv27qa1m6Fu12Fugt+9ubx+QC+vJlvunqMiHm5MH QhbGVuCW6kY= =UFK8 -----END PGP SIGNATURE-----