wireshark (2.4.6-1) unstable; urgency=medium
[ Yuri Kozlov ]
* Updated Russian translation for debconf messages (Closes: #892902)
[ Balint Reczey ]
* New upstream release
- release notes:
https://www.wireshark.org/docs/relnotes/wireshark-2.4.6.html
- security fixes:
- The MP4 dissector could crash. (CVE-2018-9259)
- The ADB dissector could crash. (CVE-2018-9264)
- The IEEE 802.15.4 dissector could crash. ()
- The NBAP dissector could crash. (CVE-2018-9261)
- The VLAN dissector could crash. (CVE-2018-9262)
- The LWAPP dissector could crash. (CVE-2018-9256)
- The TCP dissector could crash. (CVE-2018-9258)
- The CQL dissector could to into an infinite loop. (CVE-2018-9257)
- The Kerberos dissector could crash. (CVE-2018-9263)
- Multiple dissectors and other modules could leak memory.
The TN3270 (CVE-2018-9265), ISUP (CVE-2018-9266),
LAPD (CVE-2018-9267), SMB2 (CVE-2018-9268),
GIOP (CVE-2018-9269), ASN.1 (CVE-2018-9270),
MIME multipart (CVE-2018-9271), H.223 (CVE-2018-9272),
and PCP (CVE-2018-9273) dissectors were susceptible along with
Wireshark (CVE-2018-9274) and TShark.
-- Balint Reczey <email address hidden> Sun, 29 Apr 2018 21:27:02 +0200