Upstream information

CVE-2012-5238 at MITRE

Description

epan/dissectors/packet-ppp.c in the PPP dissector in Wireshark 1.8.x before 1.8.3 uses incorrect OUI data structures during the decoding of (1) PPP and (2) LCP data, which allows remote attackers to cause a denial of service (assertion failure and application exit) via a malformed packet.

SUSE information

Overall state of this security issue: Does not affect SUSE products

This issue is currently rated as having moderate severity.

CVSS v2 Scores
  National Vulnerability Database
Base Score 3.3
Vector AV:A/AC:L/Au:N/C:N/I:N/A:P
Access Vector Adjacent Network
Access Complexity Low
Authentication None
Confidentiality Impact None
Integrity Impact None
Availability Impact Partial
SUSE Bugzilla entry: 783275 [VERIFIED / FIXED]

No SUSE Security Announcements cross referenced.

List of released packages

Product(s) Fixed package version(s) References
SUSE Linux Enterprise Desktop 12 SP1
  • wireshark >= 1.12.7-15.1
  • wireshark-devel >= 1.12.7-15.1
Patchnames:
SUSE Linux Enterprise Desktop 12 SP1 GA wireshark-1.12.7-15.1
SUSE Linux Enterprise Software Development Kit 12 SP1 GA wireshark-devel-1.12.7-15.1
SUSE Linux Enterprise Desktop 12 SP2
  • wireshark >= 1.12.13-31.1
  • wireshark-devel >= 1.12.13-31.1
Patchnames:
SUSE Linux Enterprise Desktop 12 SP2 GA wireshark-1.12.13-31.1
SUSE Linux Enterprise Software Development Kit 12 SP2 GA wireshark-devel-1.12.13-31.1
SUSE Linux Enterprise Desktop 12 SP3
  • libwireshark8 >= 2.2.7-47.1
  • libwiretap6 >= 2.2.7-47.1
  • libwscodecs1 >= 2.2.7-47.1
  • libwsutil7 >= 2.2.7-47.1
  • wireshark >= 2.2.7-47.1
  • wireshark-devel >= 2.2.7-47.1
  • wireshark-gtk >= 2.2.7-47.1
Patchnames:
SUSE Linux Enterprise Desktop 12 SP3 GA libwireshark8-2.2.7-47.1
SUSE Linux Enterprise Software Development Kit 12 SP3 GA wireshark-devel-2.2.7-47.1
SUSE Linux Enterprise Desktop 12 SP4
  • libwireshark9 >= 2.4.9-48.29.1
  • libwiretap7 >= 2.4.9-48.29.1
  • libwscodecs1 >= 2.4.9-48.29.1
  • libwsutil8 >= 2.4.9-48.29.1
  • wireshark >= 2.4.9-48.29.1
  • wireshark-devel >= 2.4.9-48.29.1
  • wireshark-gtk >= 2.4.9-48.29.1
Patchnames:
SUSE Linux Enterprise Desktop 12 SP4 GA libwireshark9-2.4.9-48.29.1
SUSE Linux Enterprise Software Development Kit 12 SP4 GA wireshark-devel-2.4.9-48.29.1
SUSE Linux Enterprise Desktop 12
  • wireshark >= 1.10.9-1.11
  • wireshark-devel >= 1.10.9-1.11
Patchnames:
SUSE Linux Enterprise Desktop 12 GA wireshark-1.10.9-1.11
SUSE Linux Enterprise Software Development Kit 12 GA wireshark-devel-1.10.9-1.11
SUSE Linux Enterprise Desktop 15
SUSE Linux Enterprise High Performance Computing 15
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server for SAP Applications 15
  • libwireshark9 >= 2.4.6-1.31
  • libwiretap7 >= 2.4.6-1.31
  • libwscodecs1 >= 2.4.6-1.31
  • libwsutil8 >= 2.4.6-1.31
  • wireshark >= 2.4.6-1.31
  • wireshark-devel >= 2.4.6-1.31
  • wireshark-ui-qt >= 2.4.6-1.31
Patchnames:
SUSE Linux Enterprise Module for Basesystem 15 GA libwireshark9-2.4.6-1.31
SUSE Linux Enterprise Module for Desktop Applications 15 GA wireshark-devel-2.4.6-1.31
SUSE Linux Enterprise High Performance Computing 12 SP5
  • libwireshark9 >= 2.4.16-48.51.1
  • libwiretap7 >= 2.4.16-48.51.1
  • libwscodecs1 >= 2.4.16-48.51.1
  • libwsutil8 >= 2.4.16-48.51.1
  • wireshark >= 2.4.16-48.51.1
  • wireshark-gtk >= 2.4.16-48.51.1
Patchnames:
SUSE Linux Enterprise High Performance Computing 12 SP5 GA libwireshark9-2.4.16-48.51.1
SUSE Linux Enterprise Module for Basesystem 15
  • libwireshark9 >= 2.4.6-1.31
  • libwiretap7 >= 2.4.6-1.31
  • libwscodecs1 >= 2.4.6-1.31
  • libwsutil8 >= 2.4.6-1.31
  • wireshark >= 2.4.6-1.31
Patchnames:
SUSE Linux Enterprise Module for Basesystem 15 GA libwireshark9-2.4.6-1.31
SUSE Linux Enterprise Module for Desktop Applications 15
  • wireshark-devel >= 2.4.6-1.31
  • wireshark-ui-qt >= 2.4.6-1.31
Patchnames:
SUSE Linux Enterprise Module for Desktop Applications 15 GA wireshark-devel-2.4.6-1.31
SUSE Linux Enterprise Server 12 SP1
  • wireshark >= 1.12.7-15.1
  • wireshark-devel >= 1.12.7-15.1
Patchnames:
SUSE Linux Enterprise Server 12 SP1 GA wireshark-1.12.7-15.1
SUSE Linux Enterprise Software Development Kit 12 SP1 GA wireshark-devel-1.12.7-15.1
SUSE Linux Enterprise Server 12 SP2
  • wireshark >= 1.12.13-31.1
  • wireshark-devel >= 1.12.13-31.1
Patchnames:
SUSE Linux Enterprise Server 12 SP2 GA wireshark-1.12.13-31.1
SUSE Linux Enterprise Software Development Kit 12 SP2 GA wireshark-devel-1.12.13-31.1
SUSE Linux Enterprise Server 12 SP3
  • libwireshark8 >= 2.2.7-47.1
  • libwiretap6 >= 2.2.7-47.1
  • libwscodecs1 >= 2.2.7-47.1
  • libwsutil7 >= 2.2.7-47.1
  • wireshark >= 2.2.7-47.1
  • wireshark-devel >= 2.2.7-47.1
  • wireshark-gtk >= 2.2.7-47.1
Patchnames:
SUSE Linux Enterprise Server 12 SP3 GA libwireshark8-2.2.7-47.1
SUSE Linux Enterprise Software Development Kit 12 SP3 GA wireshark-devel-2.2.7-47.1
SUSE Linux Enterprise Server 12 SP4
  • libwireshark9 >= 2.4.9-48.29.1
  • libwiretap7 >= 2.4.9-48.29.1
  • libwscodecs1 >= 2.4.9-48.29.1
  • libwsutil8 >= 2.4.9-48.29.1
  • wireshark >= 2.4.9-48.29.1
  • wireshark-devel >= 2.4.9-48.29.1
  • wireshark-gtk >= 2.4.9-48.29.1
Patchnames:
SUSE Linux Enterprise Server 12 SP4 GA libwireshark9-2.4.9-48.29.1
SUSE Linux Enterprise Software Development Kit 12 SP4 GA wireshark-devel-2.4.9-48.29.1
SUSE Linux Enterprise Server 12 SP5
  • libwireshark9 >= 2.4.16-48.51.1
  • libwiretap7 >= 2.4.16-48.51.1
  • libwscodecs1 >= 2.4.16-48.51.1
  • libwsutil8 >= 2.4.16-48.51.1
  • wireshark >= 2.4.16-48.51.1
  • wireshark-devel >= 2.4.16-48.51.1
  • wireshark-gtk >= 2.4.16-48.51.1
Patchnames:
SUSE Linux Enterprise Server 12 SP5 GA libwireshark9-2.4.16-48.51.1
SUSE Linux Enterprise Software Development Kit 12 SP5 GA wireshark-devel-2.4.16-48.51.1
SUSE Linux Enterprise Server 12
  • wireshark >= 1.10.9-1.5
  • wireshark-devel >= 1.10.9-1.11
Patchnames:
SUSE Linux Enterprise Server 12 GA wireshark-1.10.9-1.11
SUSE Linux Enterprise Software Development Kit 12 GA wireshark-devel-1.10.9-1.11
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2
  • wireshark >= 1.12.13-31.1
Patchnames:
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 GA wireshark-1.12.13-31.1
SUSE Linux Enterprise Server for SAP Applications 12 SP1
SUSE Linux Enterprise Software Development Kit 12 SP1
  • wireshark-devel >= 1.12.7-15.1
Patchnames:
SUSE Linux Enterprise Software Development Kit 12 SP1 GA wireshark-devel-1.12.7-15.1
SUSE Linux Enterprise Server for SAP Applications 12 SP2
SUSE Linux Enterprise Software Development Kit 12 SP2
  • wireshark-devel >= 1.12.13-31.1
Patchnames:
SUSE Linux Enterprise Software Development Kit 12 SP2 GA wireshark-devel-1.12.13-31.1
SUSE Linux Enterprise Server for SAP Applications 12 SP3
SUSE Linux Enterprise Software Development Kit 12 SP3
  • wireshark-devel >= 2.2.7-47.1
Patchnames:
SUSE Linux Enterprise Software Development Kit 12 SP3 GA wireshark-devel-2.2.7-47.1
SUSE Linux Enterprise Server for SAP Applications 12 SP4
SUSE Linux Enterprise Software Development Kit 12 SP4
  • wireshark-devel >= 2.4.9-48.29.1
Patchnames:
SUSE Linux Enterprise Software Development Kit 12 SP4 GA wireshark-devel-2.4.9-48.29.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
SUSE Linux Enterprise Software Development Kit 12 SP5
  • wireshark-devel >= 2.4.16-48.51.1
Patchnames:
SUSE Linux Enterprise Software Development Kit 12 SP5 GA wireshark-devel-2.4.16-48.51.1
SUSE Linux Enterprise Server for SAP Applications 12
SUSE Linux Enterprise Software Development Kit 12
  • wireshark-devel >= 1.10.9-1.11
Patchnames:
SUSE Linux Enterprise Software Development Kit 12 GA wireshark-devel-1.10.9-1.11
openSUSE Tumbleweed
  • wireshark >= 2.2.2-1.1
  • wireshark-devel >= 2.2.2-1.1
  • wireshark-ui-gtk >= 2.2.2-1.1
  • wireshark-ui-qt >= 2.2.2-1.1
Patchnames:
openSUSE-Tumbleweed-2024-10199


SUSE Timeline for this CVE

CVE page created: Tue Jul 9 19:38:42 2013
CVE page last modified: Sat Jun 15 21:42:36 2024