{"affected":[{"ecosystem_specific":{"binaries":[{"libwireshark9":"2.4.8-3.6.1","libwiretap7":"2.4.8-3.6.1","libwscodecs1":"2.4.8-3.6.1","libwsutil8":"2.4.8-3.6.1","wireshark":"2.4.8-3.6.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Basesystem 15","name":"wireshark","purl":"pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.4.8-3.6.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"wireshark-devel":"2.4.8-3.6.1","wireshark-ui-qt":"2.4.8-3.6.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Desktop Applications 15","name":"wireshark","purl":"pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.4.8-3.6.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update for wireshark fixes the following issues:\n\nSecurity issues fixed:\n\n- CVE-2018-14342: BGP dissector large loop (wnpa-sec-2018-34, bsc#1101777)\n- CVE-2018-14344: ISMP dissector crash (wnpa-sec-2018-35, bsc#1101788)\n- CVE-2018-14340: Multiple dissectors could crash (wnpa-sec-2018-36, bsc#1101804)\n- CVE-2018-14343: ASN.1 BER dissector crash (wnpa-sec-2018-37, bsc#1101786)\n- CVE-2018-14339: MMSE dissector infinite loop (wnpa-sec-2018-38, bsc#1101810)\n- CVE-2018-14341: DICOM dissector crash (wnpa-sec-2018-39, bsc#1101776)\n- CVE-2018-14368: Bazaar dissector infinite loop (wnpa-sec-2018-40, bsc#1101794)\n- CVE-2018-14369: HTTP2 dissector crash (wnpa-sec-2018-41, bsc#1101800)\n- CVE-2018-14367: CoAP dissector crash (wnpa-sec-2018-42, bsc#1101791)\n- CVE-2018-14370: IEEE 802.11 dissector crash (wnpa-sec-2018-43, bsc#1101802)\n\nBug fixes:\n\n- Further bug fixes and updated protocol support as listed in:\n  https://www.wireshark.org/docs/relnotes/wireshark-2.4.8.html\n","id":"SUSE-SU-2018:2301-1","modified":"2018-08-10T09:39:42Z","published":"2018-08-10T09:39:42Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2018/suse-su-20182301-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1101776"},{"type":"REPORT","url":"https://bugzilla.suse.com/1101777"},{"type":"REPORT","url":"https://bugzilla.suse.com/1101786"},{"type":"REPORT","url":"https://bugzilla.suse.com/1101788"},{"type":"REPORT","url":"https://bugzilla.suse.com/1101791"},{"type":"REPORT","url":"https://bugzilla.suse.com/1101794"},{"type":"REPORT","url":"https://bugzilla.suse.com/1101800"},{"type":"REPORT","url":"https://bugzilla.suse.com/1101802"},{"type":"REPORT","url":"https://bugzilla.suse.com/1101804"},{"type":"REPORT","url":"https://bugzilla.suse.com/1101810"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-14339"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-14340"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-14341"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-14342"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-14343"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-14344"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-14367"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-14368"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-14369"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-14370"}],"related":["CVE-2018-14339","CVE-2018-14340","CVE-2018-14341","CVE-2018-14342","CVE-2018-14343","CVE-2018-14344","CVE-2018-14367","CVE-2018-14368","CVE-2018-14369","CVE-2018-14370"],"summary":"Security update for wireshark","upstream":["CVE-2018-14339","CVE-2018-14340","CVE-2018-14341","CVE-2018-14342","CVE-2018-14343","CVE-2018-14344","CVE-2018-14367","CVE-2018-14368","CVE-2018-14369","CVE-2018-14370"]}