It was reported that Wireshark's RLC dissector could crash. It may be possible to make Wireshark crash by injecting a malformed packet onto the wire or by convincing someone to read a malformed packet trace file. This is reported to affect Wireshark versions 1.10.0 to 1.10.5 and 1.8.0 to 1.8.12. It is fixed in 1.10.6 and 1.8.13. https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=9730 External References: http://www.wireshark.org/security/wnpa-sec-2014-03.html
Created wireshark tracking bugs for this issue: Affects: fedora-all [bug 1074118]
Depends on: 1074904 <- Parent bug addresses RHEL-5.10.z Using wireshark-1.0.15-5.el5 There is no such dissector, as the patch modifies: epan/dissectors/packet-rlc.c See commit 217293ba4a0353bf5d657e74fe8623dd3c86fe08 in Wireshark master. Can you, please, investigate this flaw again?
This issue has been addressed in following products: Red Hat Enterprise Linux 6 Via RHSA-2014:0342 https://rhn.redhat.com/errata/RHSA-2014-0342.html