FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2007-6114

This CVE name corresponds to:

Entered Topic
2007-12-19 wireshark -- multiple vulnerabilities

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2007-6114
Phase Assigned(20071123)

Description

Multiple buffer overflows in Wireshark (formerly Ethereal) 0.99.0 through 0.99.6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) the SSL dissector or (2) the iSeries (OS/400) Communication trace file parser.

References

Source Reference
BUGTRAQ 20080103 rPSA-2008-0004-1 tshark wireshark
MISC http://bugs.gentoo.org/show_bug.cgi?id=199958
CONFIRM http://www.wireshark.org/security/wnpa-sec-2007-03.html
CONFIRM http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0004
CONFIRM https://issues.rpath.com/browse/RPL-1975
DEBIAN DSA-1414
FEDORA FEDORA-2007-4590
FEDORA FEDORA-2007-4690
GENTOO GLSA-200712-23
MANDRIVA MDVSA-2008:001
MANDRIVA MDVSA-2008:1
REDHAT RHSA-2008:0058
REDHAT RHSA-2008:0059
SUSE SUSE-SR:2008:004
BID 26532
OVAL oval:org.mitre.oval:def:10708
VUPEN ADV-2007-3956
SECTRACK 1018988
SECUNIA 27777
SECUNIA 27817
SECUNIA 28197
SECUNIA 28288
SECUNIA 28304
SECUNIA 28207
SECUNIA 28325
SECUNIA 28564
SECUNIA 28583
SECUNIA 29048