package/wireshark: security bump to version 3.4.6
authorFabrice Fontaine <fontaine.fabrice@gmail.com>
Wed, 16 Jun 2021 06:21:13 +0000 (08:21 +0200)
committerPeter Korsgaard <peter@korsgaard.com>
Wed, 23 Jun 2021 06:56:05 +0000 (08:56 +0200)
Fix CVE-2021-22222: Infinite loop in DVB-S2-BB dissector in Wireshark
3.4.0 to 3.4.5 allows denial of service via packet injection or crafted
capture file

https://www.wireshark.org/security/wnpa-sec-2021-05.html

Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/wireshark/wireshark.hash
package/wireshark/wireshark.mk

index 57290b90606e01234509eac59b15868828dee997..ddb0f1954a918700fced95113e43870b4c3852c5 100644 (file)
@@ -1,6 +1,6 @@
-# From https://www.wireshark.org/download/src/all-versions/SIGNATURES-3.4.5.txt
-sha1  d01a9b5f58206fb458fe9fc2dac88ad0ea7152ce  wireshark-3.4.5.tar.xz
-sha256  de1aafd100a1e1207c850d180e97dd91ab8da0f5eb6beec545f725cdb145d333  wireshark-3.4.5.tar.xz
+# From https://www.wireshark.org/download/src/all-versions/SIGNATURES-3.4.6.txt
+sha1  20596183210daeb0070ae43716529caf81c6187a  wireshark-3.4.6.tar.xz
+sha256  12a678208f8cb009e6b9d96026e41a6ef03c7ad086b9e1029f42053b249b4628  wireshark-3.4.6.tar.xz
 
 # Locally calculated
 sha256  7cdbed2b697efaa45576a033f1ac0e73cd045644a91c79bbf41d4a7d81dac7bf  COPYING
index 3d656cf349173e433ca3df2acc470e2fc6fd3048..8b0ab4bfbe7a02a69b466fd697eefb6dd18f3abf 100644 (file)
@@ -4,7 +4,7 @@
 #
 ################################################################################
 
-WIRESHARK_VERSION = 3.4.5
+WIRESHARK_VERSION = 3.4.6
 WIRESHARK_SOURCE = wireshark-$(WIRESHARK_VERSION).tar.xz
 WIRESHARK_SITE = https://www.wireshark.org/download/src/all-versions
 WIRESHARK_LICENSE = wireshark license