• libpcap vulnerability

    From bugz_ubuntu@21:4/110 to Ubuntu Users on Tuesday, December 10, 2019 20:10:09
    libpcap vulnerability

    A security issue affects these releases of Ubuntu and its
    derivatives:

    * Ubuntu 19.04
    * Ubuntu 18.04 LTS
    * Ubuntu 16.04 LTS
    * Ubuntu 14.04 ESM

    Summary

    Applications using libpcap could be made to crash if given
    specially crafted data.

    Software Description

    * libpcap - Library for for user-level network packet capture

    Details

    It was discovered that libpcap did not properly validate PHB
    headers in some situations. An attacker could use this to cause a
    denial of service (memory exhaustion).

    Update instructions

    The problem can be corrected by updating your system to the
    following package versions:

    Ubuntu 19.04
    libpcap0.8 - 1.8.1-6ubuntu1.19.04.1

    Ubuntu 18.04 LTS
    libpcap0.8 - 1.8.1-6ubuntu1.18.04.1

    Ubuntu 16.04 LTS
    libpcap0.8 - 1.7.4-2ubuntu0.1

    Ubuntu 14.04 ESM
    libpcap0.8 - 1.5.3-2ubuntu0.1

    To update your system, please follow these instructions:
    https://wiki.ubuntu.com/Security/Upgrades.

    In general, a standard system update will make all the necessary
    changes.

    References

    * CVE-2019-15165

    --- Mystic BBS v1.12 A43 (Linux/64)
    * Origin: BZ&BZ BBS (21:4/110)
  • From bugz_ubuntu@21:4/110 to Ubuntu Users on Wednesday, January 15, 2020 12:10:07
    libpcap vulnerability

    A security issue affects these releases of Ubuntu and its
    derivatives:

    * Ubuntu 12.04 ESM

    Summary

    Applications using libpcap could be made to crash if given
    specially crafted data.

    Software Description

    * libpcap - Library for for user-level network packet capture

    Details

    USN-4221-1 fixed a vulnerability in libpcap. This update provides
    the corresponding update for Ubuntu 12.04 ESM.

    Original advisory details:

    It was discovered that libpcap did not properly validate PHB
    headers in some situations. An attacker could use this to cause a
    denial of service (memory exhaustion).

    Update instructions

    The problem can be corrected by updating your system to the
    following package versions:

    Ubuntu 12.04 ESM
    libpcap0.8 - 1.1.1-10ubuntu0.1

    To update your system, please follow these instructions:
    https://wiki.ubuntu.com/Security/Upgrades.

    In general, a standard system update will make all the necessary
    changes.

    References

    * USN-4221-1
    * CVE-2019-15165

    --- Mystic BBS v1.12 A43 (Linux/64)
    * Origin: BZ&BZ BBS (21:4/110)