Skip to navigation

Security Advisory wireshark security update

Advisory: RHSA-2006:0658-14
Type: Security Advisory
Severity: Low
Issued on: 2006-09-12
Last updated on: 2006-09-12
Affected Products: Red Hat Desktop (v. 3)
Red Hat Desktop (v. 4)
Red Hat Enterprise Linux AS (v. 2.1)
Red Hat Enterprise Linux AS (v. 3)
Red Hat Enterprise Linux AS (v. 4)
Red Hat Enterprise Linux ES (v. 2.1)
Red Hat Enterprise Linux ES (v. 3)
Red Hat Enterprise Linux ES (v. 4)
Red Hat Enterprise Linux WS (v. 2.1)
Red Hat Enterprise Linux WS (v. 3)
Red Hat Enterprise Linux WS (v. 4)
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor
CVEs (cve.mitre.org): CVE-2006-4330
CVE-2006-4331
CVE-2006-4333

Details

New Wireshark packages that fix various security vulnerabilities are now
available. Wireshark was previously known as Ethereal.

This update has been rated as having low security impact by the Red Hat
Security Response Team.

Wireshark is a program for monitoring network traffic.

Bugs were found in Wireshark's SCSI and SSCOP protocol dissectors. Ethereal
could crash or stop responding if it read a malformed packet off the
network. (CVE-2006-4330, CVE-2006-4333)

An off-by-one bug was found in the IPsec ESP decryption preference parser.
Ethereal could crash or stop responding if it read a malformed packet off
the network. (CVE-2006-4331)

Users of Wireshark or Ethereal should upgrade to these updated packages
containing Wireshark version 0.99.3, which is not vulnerable to these
issues. These packages also fix a bug in the PAM configuration of the
Wireshark packages which prevented non-root users starting a capture.


Solution

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

This update is available via Red Hat Network. To use Red Hat Network,
launch the Red Hat Update Agent with the following command:

up2date

This will start an interactive process that will result in the appropriate
RPMs being upgraded on your system.

Updated packages

Red Hat Desktop (v. 3)

SRPMS:
wireshark-0.99.3-EL3.2.src.rpm
File outdated by:  RHSA-2010:0625
    MD5: 976f671ab5fbb0cf05744c855c2c8cd7
 
IA-32:
wireshark-0.99.3-EL3.2.i386.rpm
File outdated by:  RHSA-2010:0625
    MD5: cabf7c0479616ec25228b5a51ee27a2f
wireshark-gnome-0.99.3-EL3.2.i386.rpm
File outdated by:  RHSA-2010:0625
    MD5: 034c036e86bdae40138b400d751eb04b
 
x86_64:
wireshark-0.99.3-EL3.2.x86_64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 48c2eb46f3b7c5abd9f1ccde2670ef3c
wireshark-gnome-0.99.3-EL3.2.x86_64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 765dd50be28bca3c0c3442829c103fdb
 
Red Hat Desktop (v. 4)

SRPMS:
wireshark-0.99.3-EL4.2.src.rpm
File outdated by:  RHSA-2011:0370
    MD5: 26d719c5c61765eb774d08909617332a
 
IA-32:
wireshark-0.99.3-EL4.2.i386.rpm
File outdated by:  RHSA-2011:0370
    MD5: 020a4db6438210df6463c3081f614068
wireshark-gnome-0.99.3-EL4.2.i386.rpm
File outdated by:  RHSA-2011:0370
    MD5: 2c3c5a956f42bd63eb6b7d788f70dd09
 
x86_64:
wireshark-0.99.3-EL4.2.x86_64.rpm
File outdated by:  RHSA-2011:0370
    MD5: 3e4b6929e5792edac83a7198e688224b
wireshark-gnome-0.99.3-EL4.2.x86_64.rpm
File outdated by:  RHSA-2011:0370
    MD5: ad531e1067be6edb1ff8e5acc4fb4502
 
Red Hat Enterprise Linux AS (v. 2.1)

SRPMS:
wireshark-0.99.3-AS21.4.src.rpm
File outdated by:  RHSA-2007:0066
    MD5: d3200dcb4d24c6433818a2f606a60773
 
IA-32:
wireshark-0.99.3-AS21.4.i386.rpm
File outdated by:  RHSA-2007:0066
    MD5: 3544a00f0fc316d5cd93cf97d131bf8f
wireshark-gnome-0.99.3-AS21.4.i386.rpm
File outdated by:  RHSA-2007:0066
    MD5: 90c06f72a357ba20f0036b91a1fa5dbf
 
IA-64:
wireshark-0.99.3-AS21.4.ia64.rpm
File outdated by:  RHSA-2007:0066
    MD5: 231dd0a5044cead3e1941e2003399756
wireshark-gnome-0.99.3-AS21.4.ia64.rpm
File outdated by:  RHSA-2007:0066
    MD5: b5779496a82156f5b920fac41b04c08d
 
Red Hat Enterprise Linux AS (v. 3)

SRPMS:
wireshark-0.99.3-EL3.2.src.rpm
File outdated by:  RHSA-2010:0625
    MD5: 976f671ab5fbb0cf05744c855c2c8cd7
 
IA-32:
wireshark-0.99.3-EL3.2.i386.rpm
File outdated by:  RHSA-2010:0625
    MD5: cabf7c0479616ec25228b5a51ee27a2f
wireshark-gnome-0.99.3-EL3.2.i386.rpm
File outdated by:  RHSA-2010:0625
    MD5: 034c036e86bdae40138b400d751eb04b
 
IA-64:
wireshark-0.99.3-EL3.2.ia64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 073f1d89f75db78abc6df4fb2ec5b3da
wireshark-gnome-0.99.3-EL3.2.ia64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 94f8bf6787f86df0d7106a2d87b6aa50
 
PPC:
wireshark-0.99.3-EL3.2.ppc.rpm
File outdated by:  RHSA-2010:0625
    MD5: 063c862c6db50948528c06c7b91989da
wireshark-gnome-0.99.3-EL3.2.ppc.rpm
File outdated by:  RHSA-2010:0625
    MD5: 7b07f3460348b3233f9f16fa77fc1277
 
s390:
wireshark-0.99.3-EL3.2.s390.rpm
File outdated by:  RHSA-2010:0625
    MD5: 61d80599bd3763f05721f5eae996b261
wireshark-gnome-0.99.3-EL3.2.s390.rpm
File outdated by:  RHSA-2010:0625
    MD5: 129125e4d3ef2dbd8dd35b031c6f63e3
 
s390x:
wireshark-0.99.3-EL3.2.s390x.rpm
File outdated by:  RHSA-2010:0625
    MD5: fbc16e924f34ba2136fd5a758f42e10c
wireshark-gnome-0.99.3-EL3.2.s390x.rpm
File outdated by:  RHSA-2010:0625
    MD5: f9c9d505f026c47cc9a4e911c934f33c
 
x86_64:
wireshark-0.99.3-EL3.2.x86_64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 48c2eb46f3b7c5abd9f1ccde2670ef3c
wireshark-gnome-0.99.3-EL3.2.x86_64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 765dd50be28bca3c0c3442829c103fdb
 
Red Hat Enterprise Linux AS (v. 4)

SRPMS:
wireshark-0.99.3-EL4.2.src.rpm
File outdated by:  RHSA-2011:0370
    MD5: 26d719c5c61765eb774d08909617332a
 
IA-32:
wireshark-0.99.3-EL4.2.i386.rpm
File outdated by:  RHSA-2011:0370
    MD5: 020a4db6438210df6463c3081f614068
wireshark-gnome-0.99.3-EL4.2.i386.rpm
File outdated by:  RHSA-2011:0370
    MD5: 2c3c5a956f42bd63eb6b7d788f70dd09
 
IA-64:
wireshark-0.99.3-EL4.2.ia64.rpm
File outdated by:  RHSA-2011:0370
    MD5: 87253ea0cbbaaaaab7ac5edfe8fcfd65
wireshark-gnome-0.99.3-EL4.2.ia64.rpm
File outdated by:  RHSA-2011:0370
    MD5: ddef33d5d9efa57e04efa8ff2c32792a
 
PPC:
wireshark-0.99.3-EL4.2.ppc.rpm
File outdated by:  RHSA-2011:0370
    MD5: 2b92533a5db47fae7841d0185249fbfc
wireshark-gnome-0.99.3-EL4.2.ppc.rpm
File outdated by:  RHSA-2011:0370
    MD5: f4212287c54e2c9c50198a7ee2f8aa4b
 
s390:
wireshark-0.99.3-EL4.2.s390.rpm
File outdated by:  RHSA-2011:0370
    MD5: 55e4e79696c90c70fb7cd703547a34d4
wireshark-gnome-0.99.3-EL4.2.s390.rpm
File outdated by:  RHSA-2011:0370
    MD5: e89ab523de55013c36f4e114766bc119
 
s390x:
wireshark-0.99.3-EL4.2.s390x.rpm
File outdated by:  RHSA-2011:0370
    MD5: cf6518e29733f23b2ce4524a6f1e2009
wireshark-gnome-0.99.3-EL4.2.s390x.rpm
File outdated by:  RHSA-2011:0370
    MD5: 9bca8e2c9ab757daae0a4f8087becc4f
 
x86_64:
wireshark-0.99.3-EL4.2.x86_64.rpm
File outdated by:  RHSA-2011:0370
    MD5: 3e4b6929e5792edac83a7198e688224b
wireshark-gnome-0.99.3-EL4.2.x86_64.rpm
File outdated by:  RHSA-2011:0370
    MD5: ad531e1067be6edb1ff8e5acc4fb4502
 
Red Hat Enterprise Linux ES (v. 2.1)

SRPMS:
wireshark-0.99.3-AS21.4.src.rpm
File outdated by:  RHSA-2007:0066
    MD5: d3200dcb4d24c6433818a2f606a60773
 
IA-32:
wireshark-0.99.3-AS21.4.i386.rpm
File outdated by:  RHSA-2007:0066
    MD5: 3544a00f0fc316d5cd93cf97d131bf8f
wireshark-gnome-0.99.3-AS21.4.i386.rpm
File outdated by:  RHSA-2007:0066
    MD5: 90c06f72a357ba20f0036b91a1fa5dbf
 
Red Hat Enterprise Linux ES (v. 3)

SRPMS:
wireshark-0.99.3-EL3.2.src.rpm
File outdated by:  RHSA-2010:0625
    MD5: 976f671ab5fbb0cf05744c855c2c8cd7
 
IA-32:
wireshark-0.99.3-EL3.2.i386.rpm
File outdated by:  RHSA-2010:0625
    MD5: cabf7c0479616ec25228b5a51ee27a2f
wireshark-gnome-0.99.3-EL3.2.i386.rpm
File outdated by:  RHSA-2010:0625
    MD5: 034c036e86bdae40138b400d751eb04b
 
IA-64:
wireshark-0.99.3-EL3.2.ia64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 073f1d89f75db78abc6df4fb2ec5b3da
wireshark-gnome-0.99.3-EL3.2.ia64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 94f8bf6787f86df0d7106a2d87b6aa50
 
x86_64:
wireshark-0.99.3-EL3.2.x86_64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 48c2eb46f3b7c5abd9f1ccde2670ef3c
wireshark-gnome-0.99.3-EL3.2.x86_64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 765dd50be28bca3c0c3442829c103fdb
 
Red Hat Enterprise Linux ES (v. 4)

SRPMS:
wireshark-0.99.3-EL4.2.src.rpm
File outdated by:  RHSA-2011:0370
    MD5: 26d719c5c61765eb774d08909617332a
 
IA-32:
wireshark-0.99.3-EL4.2.i386.rpm
File outdated by:  RHSA-2011:0370
    MD5: 020a4db6438210df6463c3081f614068
wireshark-gnome-0.99.3-EL4.2.i386.rpm
File outdated by:  RHSA-2011:0370
    MD5: 2c3c5a956f42bd63eb6b7d788f70dd09
 
IA-64:
wireshark-0.99.3-EL4.2.ia64.rpm
File outdated by:  RHSA-2011:0370
    MD5: 87253ea0cbbaaaaab7ac5edfe8fcfd65
wireshark-gnome-0.99.3-EL4.2.ia64.rpm
File outdated by:  RHSA-2011:0370
    MD5: ddef33d5d9efa57e04efa8ff2c32792a
 
x86_64:
wireshark-0.99.3-EL4.2.x86_64.rpm
File outdated by:  RHSA-2011:0370
    MD5: 3e4b6929e5792edac83a7198e688224b
wireshark-gnome-0.99.3-EL4.2.x86_64.rpm
File outdated by:  RHSA-2011:0370
    MD5: ad531e1067be6edb1ff8e5acc4fb4502
 
Red Hat Enterprise Linux WS (v. 2.1)

SRPMS:
wireshark-0.99.3-AS21.4.src.rpm
File outdated by:  RHSA-2007:0066
    MD5: d3200dcb4d24c6433818a2f606a60773
 
IA-32:
wireshark-0.99.3-AS21.4.i386.rpm
File outdated by:  RHSA-2007:0066
    MD5: 3544a00f0fc316d5cd93cf97d131bf8f
wireshark-gnome-0.99.3-AS21.4.i386.rpm
File outdated by:  RHSA-2007:0066
    MD5: 90c06f72a357ba20f0036b91a1fa5dbf
 
Red Hat Enterprise Linux WS (v. 3)

SRPMS:
wireshark-0.99.3-EL3.2.src.rpm
File outdated by:  RHSA-2010:0625
    MD5: 976f671ab5fbb0cf05744c855c2c8cd7
 
IA-32:
wireshark-0.99.3-EL3.2.i386.rpm
File outdated by:  RHSA-2010:0625
    MD5: cabf7c0479616ec25228b5a51ee27a2f
wireshark-gnome-0.99.3-EL3.2.i386.rpm
File outdated by:  RHSA-2010:0625
    MD5: 034c036e86bdae40138b400d751eb04b
 
IA-64:
wireshark-0.99.3-EL3.2.ia64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 073f1d89f75db78abc6df4fb2ec5b3da
wireshark-gnome-0.99.3-EL3.2.ia64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 94f8bf6787f86df0d7106a2d87b6aa50
 
x86_64:
wireshark-0.99.3-EL3.2.x86_64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 48c2eb46f3b7c5abd9f1ccde2670ef3c
wireshark-gnome-0.99.3-EL3.2.x86_64.rpm
File outdated by:  RHSA-2010:0625
    MD5: 765dd50be28bca3c0c3442829c103fdb
 
Red Hat Enterprise Linux WS (v. 4)

SRPMS:
wireshark-0.99.3-EL4.2.src.rpm
File outdated by:  RHSA-2011:0370
    MD5: 26d719c5c61765eb774d08909617332a
 
IA-32:
wireshark-0.99.3-EL4.2.i386.rpm
File outdated by:  RHSA-2011:0370
    MD5: 020a4db6438210df6463c3081f614068
wireshark-gnome-0.99.3-EL4.2.i386.rpm
File outdated by:  RHSA-2011:0370
    MD5: 2c3c5a956f42bd63eb6b7d788f70dd09
 
IA-64:
wireshark-0.99.3-EL4.2.ia64.rpm
File outdated by:  RHSA-2011:0370
    MD5: 87253ea0cbbaaaaab7ac5edfe8fcfd65
wireshark-gnome-0.99.3-EL4.2.ia64.rpm
File outdated by:  RHSA-2011:0370
    MD5: ddef33d5d9efa57e04efa8ff2c32792a
 
x86_64:
wireshark-0.99.3-EL4.2.x86_64.rpm
File outdated by:  RHSA-2011:0370
    MD5: 3e4b6929e5792edac83a7198e688224b
wireshark-gnome-0.99.3-EL4.2.x86_64.rpm
File outdated by:  RHSA-2011:0370
    MD5: ad531e1067be6edb1ff8e5acc4fb4502
 
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor

SRPMS:
wireshark-0.99.3-AS21.4.src.rpm
File outdated by:  RHSA-2007:0066
    MD5: d3200dcb4d24c6433818a2f606a60773
 
IA-64:
wireshark-0.99.3-AS21.4.ia64.rpm
File outdated by:  RHSA-2007:0066
    MD5: 231dd0a5044cead3e1941e2003399756
wireshark-gnome-0.99.3-AS21.4.ia64.rpm
File outdated by:  RHSA-2007:0066
    MD5: b5779496a82156f5b920fac41b04c08d
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

204045 - CVE-2006-4330 Wireshark security issues (CVE-2006-4331 CVE-2006-4333)
204066 - wireshark doesn't work as non root user


References


Keywords

ethereal


These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/