FS#44153 - [tcpdump] multiple denial-of-service issues
Attached to Project:
Arch Linux
Opened by Levente Polyak (anthraxx) - Wednesday, 11 March 2015, 14:47 GMT
Last edited by Giovanni Scafora (giovanni) - Sunday, 29 March 2015, 07:45 GMT
Opened by Levente Polyak (anthraxx) - Wednesday, 11 March 2015, 14:47 GMT
Last edited by Giovanni Scafora (giovanni) - Sunday, 29 March 2015, 07:45 GMT
|
Details
Description:
It has been reported that tcpdump before version 4.7.2 is vulnerable to multiple issues, including: CVE-2014-8767 CVE-2014-8768 CVE-2014-8769 CVE-2014-9140 CVE-2015-0261 CVE-2015-2153 CVE-2015-2154 CVE-2015-2155 Mitigation: It is recommended to update to 4.7.2 to mitigate all remote crash vulnerabilities. |
This task depends upon
Closed by Giovanni Scafora (giovanni)
Sunday, 29 March 2015, 07:45 GMT
Reason for closing: Fixed
Additional comments about closing: Fixed with tcpdump-4.7.3
Sunday, 29 March 2015, 07:45 GMT
Reason for closing: Fixed
Additional comments about closing: Fixed with tcpdump-4.7.3
Comment by
Levente Polyak (anthraxx) - Friday,
20 March 2015, 19:45 GMT
all problems fixed with tcpdump 4.7.3-1 in extra