+++ This bug was initially created as a clone of Bug #232347 +++ A potential denial of service flaw due to a single byte overflow was found in the way tcpdump processes 802.11 packets: http://seclists.org/fulldisclosure/2007/Mar/0003.html The upstream patch is here: http://cvs.tcpdump.org/cgi-bin/cvsweb/tcpdump/print-802_11.c?r1=1.42&r2=1.43 From inspecting our packages it seems that the initial, incorrect test isn't even present, which still leaves our packages vulnerable to this flaw.
This flaw should also affect FC5 and the upcoming FC7
Fixed in tcpdump-3.9.4-4.fc5 tcpdump-3.9.4-10.fc6 tcpdump-3.9.5-3.fc7