tags 497878 patch thanks Hi
This one is for the CVE-2008-3933: http://anonsvn.wireshark.org/viewvc/index.py/trunk/epan/tvbuff.c?r1=25498&r2=25677&pathrev=25677 These ones should address CVE-2008-3146 and CVE-2008-3932. http://anonsvn.wireshark.org/viewvc/index.py/trunk/epan/dissectors/packet-ncp2222.inc?r1=24522&r2=25600&pathrev=25600 http://anonsvn.wireshark.org/viewvc/index.py/trunk/epan/dissectors/packet-ncp2222.inc?r1=25683&r2=25807&pathrev=25807 http://anonsvn.wireshark.org/viewvc/index.py/trunk/epan/dissectors/packet-ncp2222.inc?r1=25807&r2=25892&pathrev=25892 http://anonsvn.wireshark.org/viewvc/index.py/trunk/epan/dissectors/packet-ncp2222.inc?r1=25911&r2=25913&pathrev=25913 http://anonsvn.wireshark.org/viewvc/index.py/trunk/epan/dissectors/packet-ncp2222.inc?r1=25913&r2=25914&pathrev=25914 http://anonsvn.wireshark.org/viewvc/index.py/trunk/epan/dissectors/packet-ncp2222.inc?r1=26012&r2=26011&pathrev=26012 Upstream also mentioned these ones, but I guess they can be omitted. http://anonsvn.wireshark.org/viewvc/index.py/trunk/epan/dissectors/packet-btrfcomm.c?r1=25682&r2=25681&pathrev=25682 http://anonsvn.wireshark.org/viewvc/index.py/trunk/epan/dissectors/packet-ncp2222.inc?r1=25682&r2=25681&pathrev=25682 http://anonsvn.wireshark.org/viewvc/index.py/trunk/epan/dissectors/packet-ncp2222.inc?r1=25683&r2=25682&pathrev=25683 http://anonsvn.wireshark.org/viewvc/index.py/trunk/epan/dissectors/packet-ncp2222.inc?r1=25911&r2=25910&pathrev=25911 Upstream has been asked about CVE-2008-3934, but no answer has been received yet. Please feel free to review these patches and see if they can be integrated into the debian versions. Cheers Steffen
signature.asc
Description: This is a digitally signed message part.