Vulnerabilities affecting multiple versions eliminated

Jan 11, 2012 14:21 GMT  ·  By

A new release for Wireshark is out, fixing vulnerabilities and squashing various bugs. The new version number for the stable build is 1.6.5.

All of the vulnerabilities eliminated span across multiple builds of the program: 1.4.0 through 1.4.10 and 1.6.0 through 1.6.4.

These included failure to properly check record sizes for many packet capture file format, crashing after dereferencing NULL pointer and buffer overflow caused by the RLC dissector.

There are no new protocols included, but there is updated support for the existing protocols. Also, there is new and updated capture file support: Accellent 5Views, AIX iptrace, HP-UX nettl, I4B, Microsoft Network, Monitor, Novell LANalyzer, PacketLogger, Pcap-ng, Sniffer, Tektronix K12, WildPackets (Airo and EtherPeek).

A set of bugs have also been taken care of, such as rebooting for SSL/TLS decryption. You can see the complete list of changes on this page.

Download Wireshark from here