int(5576)

Boletines de Vulnerabilidades


Denegación de servicio en Wireshark

Clasificación de la vulnerabilidad

Propiedad Valor
Nivel de Confianza Oficial
Impacto Denegación de Servicio
Dificultad Experto
Requerimientos del atacante Acceso remoto sin cuenta a un servicio estandar

Información sobre el sistema

Propiedad Valor
Fabricante afectado GNU/Linux
Software afectado Wireshark 1.4.x < 1.4.1
Wireshark 1.2.x < 1.2.12

Descripción

CVE-2010-3445: Se ha descubierto una vulnerabilidad de denegación de servicio en Wireshark 1.4.x y versiones anteriores a 1.4.1 y Wireshark 1.2.x y versiones anteriores a 1.2.12. La vulnerabilidad reside en la función "dissect_ber_unknown en "epan/dissectors/packet-ber.c".
Un atacante remoto podría causar un ataque de denegación de servicio mediante la manipulación de una cadena en un paquete codificado en "ASN.1/BER ".BER ".

Solución



Actualización de software

Debian (DSA-2127-1)

Source archives: http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11.dsc http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11.diff.gz http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2.orig.tar.gz alpha architecture (DEC Alpha) http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2-3+lenny11_alpha.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-common_1.0.2-3+lenny11_alpha.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11_alpha.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev_1.0.2-3+lenny11_alpha.deb amd64 architecture (AMD x86_64 (AMD64)) http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11_amd64.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-common_1.0.2-3+lenny11_amd64.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev_1.0.2-3+lenny11_amd64.deb http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2-3+lenny11_amd64.deb arm architecture (ARM) http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11_arm.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev_1.0.2-3+lenny11_arm.deb http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2-3+lenny11_arm.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-common_1.0.2-3+lenny11_arm.deb armel architecture (ARM EABI) http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11_armel.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-common_1.0.2-3+lenny11_armel.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev_1.0.2-3+lenny11_armel.deb http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2-3+lenny11_armel.deb hppa architecture (HP PA RISC) http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11_hppa.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-common_1.0.2-3+lenny11_hppa.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev_1.0.2-3+lenny11_hppa.deb http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2-3+lenny11_hppa.deb i386 architecture (Intel ia32) http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev_1.0.2-3+lenny11_i386.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11_i386.deb http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2-3+lenny11_i386.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-common_1.0.2-3+lenny11_i386.deb ia64 architecture (Intel ia64) http://security.debian.org/pool/updates/main/w/wireshark/wireshark-common_1.0.2-3+lenny11_ia64.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev_1.0.2-3+lenny11_ia64.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11_ia64.deb http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2-3+lenny11_ia64.deb mips architecture (MIPS (Big Endian)) http://security.debian.org/pool/updates/main/w/wireshark/wireshark-common_1.0.2-3+lenny11_mips.deb http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2-3+lenny11_mips.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11_mips.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev_1.0.2-3+lenny11_mips.deb mipsel architecture (MIPS (Little Endian)) http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11_mipsel.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev_1.0.2-3+lenny11_mipsel.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-common_1.0.2-3+lenny11_mipsel.deb http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2-3+lenny11_mipsel.deb powerpc architecture (PowerPC) http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2-3+lenny11_powerpc.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-common_1.0.2-3+lenny11_powerpc.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev_1.0.2-3+lenny11_powerpc.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11_powerpc.deb s390 architecture (IBM S/390) http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev_1.0.2-3+lenny11_s390.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11_s390.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-common_1.0.2-3+lenny11_s390.deb http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2-3+lenny11_s390.deb sparc architecture (Sun SPARC/UltraSPARC) http://security.debian.org/pool/updates/main/w/wireshark/tshark_1.0.2-3+lenny11_sparc.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark_1.0.2-3+lenny11_sparc.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-common_1.0.2-3+lenny11_sparc.deb http://security.debian.org/pool/updates/main/w/wireshark/wireshark-dev_1.0.2-3+lenny11_sparc.deb

Identificadores estándar

Propiedad Valor
CVE CVE-2010-3445
BID

Recursos adicionales

Debian Security Advisory (DSA-2127-1)
http://lists.debian.org/debian-security-announce/2010/msg00178.html

Histórico de versiones

Versión Comentario Fecha
1.0 Aviso emitido 2010-12-01
1.1 Aviso emitido por Red Hat (RHSA-2011:0370-01) 2011-03-22

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT