RHSA-2008:0058: Moderate: wireshark security update

Published Jan 21, 2008
·
Updated

Wireshark is a program for monitoring network traffic. Wireshark waspreviously known as Ethereal.Several flaws were found in Wireshark. Wireshark could crash or possiblyexecute arbitrary code as the user running Wireshark if it read a malformedpacket off the network. (CVE-2007-6112, CVE-2007-6114, CVE-2007-6115,CVE-2007-6117)Several denial of service bugs were found in Wireshark. Wireshark couldcrash or stop responding if it read a malformed packet off the network.(CVE-2007-6111, CVE-2007-6113, CVE-2007-6116, CVE-2007-6118, CVE-2007-6119,CVE-2007-6120, CVE-2007-6121, CVE-2007-6438, CVE-2007-6439, CVE-2007-6441,CVE-2007-6450, CVE-2007-6451)As well, Wireshark switched from using net-snmp to libsmi, which isincluded in this errata.Users of wireshark should upgrade to these updated packages, which containWireshark version 0.99.7, and resolve these issues.

Affected Software

16 affected componentsFixes available
redhat/libsmi<0.4.5-2.el5
0.4.5-2.el5
redhat/wireshark<0.99.7-1.el5
0.99.7-1.el5
redhat/libsmi<0.4.5-2.el5
0.4.5-2.el5
redhat/libsmi-devel<0.4.5-2.el5
0.4.5-2.el5
redhat/libsmi-devel<0.4.5-2.el5
0.4.5-2.el5
redhat/wireshark<0.99.7-1.el5
0.99.7-1.el5
redhat/wireshark-gnome<0.99.7-1.el5
0.99.7-1.el5
redhat/wireshark-gnome<0.99.7-1.el5
0.99.7-1.el5
redhat/libsmi<0.4.5-2.el4
0.4.5-2.el4
redhat/wireshark<0.99.7-1.el4
0.99.7-1.el4
redhat/libsmi<0.4.5-2.el4
0.4.5-2.el4
redhat/libsmi-devel<0.4.5-2.el4
0.4.5-2.el4
redhat/wireshark<0.99.7-1.el4
0.99.7-1.el4
redhat/wireshark-gnome<0.99.7-1.el4
0.99.7-1.el4
redhat/libsmi-devel<0.4.5-2.el4
0.4.5-2.el4
redhat/wireshark-gnome<0.99.7-1.el4
0.99.7-1.el4

Remediation

Event History

Jan 21, 2008
Advisory Published
via Red Hat·12:00 AM

Frequently Asked Questions

1

What is the severity of RHSA-2008:0058?

The severity of RHSA-2008:0058 is classified as critical due to the potential for arbitrary code execution.

2

How do I fix RHSA-2008:0058?

To fix RHSA-2008:0058, update Wireshark and libsmi to the latest recommended versions.

3

What software is affected by RHSA-2008:0058?

The affected software for RHSA-2008:0058 includes Wireshark versions up to 0.99.7-1.el5 and libsmi versions up to 0.4.5-2.el5.

4

What can happen if RHSA-2008:0058 is exploited?

If exploited, RHSA-2008:0058 could lead to a crash of the Wireshark application or arbitrary code execution by an attacker.

5

Is RHSA-2008:0058 relevant for all systems?

RHSA-2008:0058 is specifically relevant for systems running affected versions of Wireshark and libsmi, particularly on Red Hat Enterprise Linux 5 and 4.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203