Wireshark was updated to 1.12.13 to fix a number of minor security issues and bugs.
This release fixes a number issues in protocol dissectors that could have allowed a remote attacker to crash Wireshark or cause excessive CPU usage through specially crafted packages inserted into the network or a capture file.
- CVE-2016-6504: NDS dissector crash (boo#991012)
- CVE-2016-6505: PacketBB crash (boo#991013)
- CVE-2016-6506: WSP infinite loop (boo#991015)
- CVE-2016-6507: MMSE infinite loop (boo#991016)
- CVE-2016-6508: RLC long loop (boo#991017)
- CVE-2016-6509: LDSS dissector crash (boo#991018)
- CVE-2016-6510: RLC dissector crash (boo#991019)
- CVE-2016-6511: OpenFlow long loop (boo#991020)
This update also includes further bug fixes and updated protocol support as listed in:
https://www.wireshark.org/docs/relnotes/wireshark-1.12.13.html
- Submitted by Andreas Stieger (AndreasStieger)