DescriptionMurray McAllister
2014-09-17 06:07:54 UTC
It was reported that Wireshark's RTSP dissector could crash. It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file.
This is reported to affect Wireshark versions 1.12.0, and 1.10.0 to 1.10.9. It is fixed in versions 1.12.1 and 1.10.10.
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=10381
The version of Wireshark in Red Hat Enterprise Linux 5 and 6 is older than 1.10.x, and should not be affected. The version of Wireshark in Red Hat Enterprise Linux 7 is affected.
External References:
https://www.wireshark.org/security/wnpa-sec-2014-17.html
Comment 1Murray McAllister
2014-09-17 06:17:35 UTC
Created wireshark tracking bugs for this issue:
Affects: fedora-all [bug 1142613]
Comment 2Fedora Update System
2014-09-25 10:41:07 UTC
wireshark-1.10.10-1.fc20 has been pushed to the Fedora 20 stable repository. If problems still persist, please make note of it in this bug report.