{"affected":[{"ecosystem_specific":{"binaries":[{"libwireshark9":"2.4.9-3.9.1","libwiretap7":"2.4.9-3.9.1","libwscodecs1":"2.4.9-3.9.1","libwsutil8":"2.4.9-3.9.1","wireshark":"2.4.9-3.9.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Basesystem 15","name":"wireshark","purl":"pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.4.9-3.9.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"wireshark-devel":"2.4.9-3.9.1","wireshark-ui-qt":"2.4.9-3.9.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Desktop Applications 15","name":"wireshark","purl":"pkg:rpm/suse/wireshark&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.4.9-3.9.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update for wireshark to version 2.4.9 fixes the following issues:\n\nSecurity issues fixed (bsc#1106514):\n\n- CVE-2018-16058: Bluetooth AVDTP dissector crash (wnpa-sec-2018-44)\n- CVE-2018-16056: Bluetooth Attribute Protocol dissector crash (wnpa-sec-2018-45)\n- CVE-2018-16057: Radiotap dissector crash (wnpa-sec-2018-46)\n\nFurther bug fixes and updated protocol support as listed in:\n  https://www.wireshark.org/docs/relnotes/wireshark-2.4.9.html\n","id":"SUSE-SU-2018:2889-1","modified":"2018-09-27T10:03:14Z","published":"2018-09-27T10:03:14Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2018/suse-su-20182889-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1106514"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-16056"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-16057"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-16058"}],"related":["CVE-2018-16056","CVE-2018-16057","CVE-2018-16058"],"summary":"Security update for wireshark","upstream":["CVE-2018-16056","CVE-2018-16057","CVE-2018-16058"]}