MGASA-2019-0297 - Updated libpcap and tcpdump packages fix security vulnerabilities

Publication date: 16 Oct 2019
URL: https://advisories.mageia.org/MGASA-2019-0297.html
Type: security
Affected Mageia releases: 7
CVE: CVE-2017-16808,
     CVE-2018-10103,
     CVE-2018-10105,
     CVE-2018-14461,
     CVE-2018-14462,
     CVE-2018-14463,
     CVE-2018-14464,
     CVE-2018-14465,
     CVE-2018-14466,
     CVE-2018-14467,
     CVE-2018-14468,
     CVE-2018-14469,
     CVE-2018-14470,
     CVE-2018-14879,
     CVE-2018-14880,
     CVE-2018-14881,
     CVE-2018-14882,
     CVE-2018-16227,
     CVE-2018-16228,
     CVE-2018-16229,
     CVE-2018-16230,
     CVE-2018-16300,
     CVE-2018-16301,
     CVE-2018-16451,
     CVE-2018-16452,
     CVE-2019-15161,
     CVE-2019-15162,
     CVE-2019-15163,
     CVE-2019-15164,
     CVE-2019-15165,
     CVE-2019-15166,
     CVE-2019-15167

Updated libpcap and tcpdump packages fix security vulnerabilities:

The libpcap packages have been updated to versions 1.9.1 and tcpdump
to 4.9.3, respectively, fixing several buffer overread and overflow
issues.

References:
- https://bugs.mageia.org/show_bug.cgi?id=25565
- https://git.tcpdump.org/libpcap/blob/HEAD:/CHANGES
- https://git.tcpdump.org/tcpdump/blob/HEAD:/CHANGES
- https://www.tcpdump.org/public-cve-list.txt
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-16808
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10103
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10105
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14461
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14462
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14463
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14464
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14465
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14466
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14467
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14468
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14469
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14470
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14879
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14880
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14881
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14882
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16227
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16228
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16229
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16230
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16300
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16301
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16451
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16452
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15161
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15162
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15163
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15164
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15165
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15166
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15167

SRPMS:
- 7/core/libpcap-1.9.1-1.mga7
- 7/core/tcpdump-4.9.3-1.mga7

Mageia 2019-0297: libpcap and tcpdump security update

Updated libpcap and tcpdump packages fix security vulnerabilities: The libpcap packages have been updated to versions 1.9.1 and tcpdump to 4.9.3, respectively, fixing several buff...

Summary

Updated libpcap and tcpdump packages fix security vulnerabilities:
The libpcap packages have been updated to versions 1.9.1 and tcpdump to 4.9.3, respectively, fixing several buffer overread and overflow issues.

References

- https://bugs.mageia.org/show_bug.cgi?id=25565

- https://git.tcpdump.org/libpcap/blob/HEAD:/CHANGES

- https://git.tcpdump.org/tcpdump/blob/HEAD:/CHANGES

- https://www.tcpdump.org/public-cve-list.txt

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-16808

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10103

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10105

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14461

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14462

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14463

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14464

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14465

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14466

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14467

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14468

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14469

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14470

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14879

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14880

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14881

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14882

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16227

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16228

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16229

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16230

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16300

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16301

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16451

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16452

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15161

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15162

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15163

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15164

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15165

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15166

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15167

Resolution

MGASA-2019-0297 - Updated libpcap and tcpdump packages fix security vulnerabilities

SRPMS

- 7/core/libpcap-1.9.1-1.mga7

- 7/core/tcpdump-4.9.3-1.mga7

Severity
Publication date: 16 Oct 2019
URL: https://advisories.mageia.org/MGASA-2019-0297.html
Type: security
CVE: CVE-2017-16808, CVE-2018-10103, CVE-2018-10105, CVE-2018-14461, CVE-2018-14462, CVE-2018-14463, CVE-2018-14464, CVE-2018-14465, CVE-2018-14466, CVE-2018-14467, CVE-2018-14468, CVE-2018-14469, CVE-2018-14470, CVE-2018-14879, CVE-2018-14880, CVE-2018-14881, CVE-2018-14882, CVE-2018-16227, CVE-2018-16228, CVE-2018-16229, CVE-2018-16230, CVE-2018-16300, CVE-2018-16301, CVE-2018-16451, CVE-2018-16452, CVE-2019-15161, CVE-2019-15162, CVE-2019-15163, CVE-2019-15164, CVE-2019-15165, CVE-2019-15166, CVE-2019-15167

Related News