Wireshark 1.12.4 patches six security vulnerabilities that have been discovered since the previous version of the software, Wireshark 1.12.3. These were mostly related to the dissectors, including WCP, WCP dissector, LLDP, SCSI OSD, and TNEF. Numerous bugs have been fixed in Wireshark 1.12.4. Among them, we can mention incorrect parsing of IPv6 mobility header link layer address, IPv6 mobility header link-layer address mobility option, and DNS NXT RR, a "Telephony?SCTP?Analyse This Association" crash, as well as incorrect parsing of authentication data and mobility SPI by the IPv6 AUTH mobility option. |
Printed at http://lxer.com/module/newswire/view/211298/index.html