An off-by-one error was found in the Wireshark, when dissecting Samba packets. A remote attacker could provide a specially-crafted Samba packet capture file, which once opened by an unsuspecting user would lead to denial of service (Wireshark crash). Upstream patch: --------------- http://anonsvn.wireshark.org/viewvc?view=rev&revision=30595
This issue does NOT affect the versions of the wireshark package, as shipped with Red Hat Enterprise Linux 3, 4, or 5. This issue affects the versions of the wireshark package, as shipped with Fedora releases of 10, 11, and as scheduled to appear in Fedora release of 12.
1.2.3: http://www.wireshark.org/security/wnpa-sec-2009-07.html