Amazon Linux 2022 Security Advisory: ALAS-2023-268
Advisory Release Date: 2023-01-20 16:44 Pacific
Advisory Updated Date: 2023-01-24 21:22 Pacific
Severity:
Medium
References:
CVE-2022-3725
Issue Overview:
Crash in the OPUS protocol dissector in Wireshark 3.6.0 to 3.6.8 allows denial of service via packet injection or crafted capture file (CVE-2022-3725)
Affected Packages:
wireshark
Issue Correction:
Run dnf update wireshark to update your system.
New Packages:
aarch64:
wireshark-cli-debuginfo-4.0.2-1.amzn2022.0.1.aarch64
wireshark-cli-4.0.2-1.amzn2022.0.1.aarch64
wireshark-devel-4.0.2-1.amzn2022.0.1.aarch64
wireshark-debugsource-4.0.2-1.amzn2022.0.1.aarch64
i686:
wireshark-cli-debuginfo-4.0.2-1.amzn2022.0.1.i686
wireshark-cli-4.0.2-1.amzn2022.0.1.i686
wireshark-devel-4.0.2-1.amzn2022.0.1.i686
wireshark-debugsource-4.0.2-1.amzn2022.0.1.i686
src:
wireshark-4.0.2-1.amzn2022.0.1.src
x86_64:
wireshark-cli-debuginfo-4.0.2-1.amzn2022.0.1.x86_64
wireshark-cli-4.0.2-1.amzn2022.0.1.x86_64
wireshark-devel-4.0.2-1.amzn2022.0.1.x86_64
wireshark-debugsource-4.0.2-1.amzn2022.0.1.x86_64