CVE-2009-0601

Publication date 16 February 2009

Last updated 24 July 2024


Ubuntu priority

Format string vulnerability in Wireshark 0.99.8 through 1.0.5 on non-Windows platforms allows local users to cause a denial of service (application crash) via format string specifiers in the HOME environment variable.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
wireshark 11.10 oneiric
Fixed 1.0.6-1ubuntu1
11.04 natty
Fixed 1.0.6-1ubuntu1
10.10 maverick
Fixed 1.0.6-1ubuntu1
10.04 LTS lucid
Fixed 1.0.6-1ubuntu1
9.10 karmic
Fixed 1.0.6-1ubuntu1
9.04 jaunty
Fixed 1.0.6-1ubuntu1
8.10 intrepid Ignored end of life, was needed
8.04 LTS hardy Ignored end of life
7.10 gutsy Ignored end of life, was needed
6.06 LTS dapper Not in release