Bug 68154

Summary: ethereal 0.9.4 security issues
Product: [Retired] Red Hat Linux Reporter: Chris Ricker <chris.ricker>
Component: etherealAssignee: Phil Knirsch <pknirsch>
Status: CLOSED ERRATA QA Contact:
Severity: medium Docs Contact:
Priority: medium    
Version: 7.3CC: rvokal
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: i386   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2002-08-29 14:41:49 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Chris Ricker 2002-07-07 04:46:08 UTC
Buffer overflows have been found in several of the dissectors used in the 0.94
(and prior releases) ethereal errata.  0.95 has been released to fix the bugs.

<A
HREF="http://www.ethereal.com/appnotes/enpa-sa-00005.html">http://www.ethereal.com/appnotes/enpa-sa-00005.html</A>

Comment 1 Phil Knirsch 2002-07-17 12:25:59 UTC
*sigh* YABO in ethereal. Will schedule YAE for ethereal.

Read ya, Phil

Comment 2 Mark J. Cox 2002-08-16 08:11:11 UTC
errata in progress

Comment 3 Chris Ricker 2002-08-22 23:15:12 UTC
Now it needs to be 0.9.6.  Check ethereal.com for still more security issues....

Comment 4 Chris Ricker 2002-08-24 17:09:34 UTC
BTW, this applies to null as well....

Comment 5 Mark J. Cox 2002-08-28 11:34:25 UTC
*** Bug 72089 has been marked as a duplicate of this bug. ***

Comment 6 Mark J. Cox 2002-08-29 14:41:49 UTC
An errata has been issued which should help the problem described in this bug report. 
This report is therefore being closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files, please follow the link below. You may reopen 
this bug report if the solution does not work for you.

http://rhn.redhat.com/errata/RHSA-2002-169.html


Comment 7 Andrew Gormanly 2002-09-17 08:03:39 UTC
Will there be a binary errata package built for SPARC/6.2?  Or do the bugs not
affect that platform?