<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="c4745f0c0b9184f32b2201f189dc66f6"!-->
<patch
    xmlns="http://novell.com/package/metadata/suse/patch"
    xmlns:yum="http://linux.duke.edu/metadata/common"
    xmlns:rpm="http://linux.duke.edu/metadata/rpm"
    xmlns:suse="http://novell.com/package/metadata/suse/common"
    patchid="ethereal-2248"
    timestamp="1163093898"
    engine="1.0">
  <yum:name>ethereal</yum:name>
  <summary lang="en">Security update for ethereal</summary>
  <summary lang="de">Security update for ethereal</summary>
  <description lang="en">Various problems have been fixed in the network analyzer
Ethereal, most leading to crashes of the ethereal program.

CVE-2006-5740: A unspecified vulnerability in the LDAP
dissector could be used to crash Ethereal.

CVE-2006-4574: A single \0 byte heap overflow was fixed in
the MIME multipart dissector. Potential of exploitability
is unknown, but considered low.

CVE-2006-4805: A denial of service problem in the XOT
dissector can cause it to take up huge amount of memory and
crash ethereal.

CVE-2006-5469: The WBXML dissector could be used to crash
ethereal.

CVE-2006-5468: A NULL pointer dereference in the HTTP
dissector could crash ethereal.
</description>
  <description lang="de">Various problems have been fixed in the network analyzer
Ethereal, most leading to crashes of the ethereal program.

CVE-2006-5740: A unspecified vulnerability in the LDAP
dissector could be used to crash Ethereal.

CVE-2006-4574: A single \0 byte heap overflow was fixed in
the MIME multipart dissector. Potential of exploitability
is unknown, but considered low.

CVE-2006-4805: A denial of service problem in the XOT
dissector can cause it to take up huge amount of memory and
crash ethereal.

CVE-2006-5469: The WBXML dissector could be used to crash
ethereal.

CVE-2006-5468: A NULL pointer dereference in the HTTP
dissector could crash ethereal.
</description>
  <yum:version ver="2248" rel="0"/>
  <rpm:requires>
    <rpm:entry kind="atom" name="ethereal" epoch="0" ver="0.10.14" rel="16.11" flags="EQ"/>
  </rpm:requires>
  <category>security</category>
  <atoms>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>ethereal</name>
      <arch>i586</arch>
      <version epoch="0" ver="0.10.14" rel="16.11"/>
      <checksum type="sha" pkgid="YES">c29270fe47c16ffd86bfb1170a09168a6c6dd1c0</checksum>
      <time file="1163115765" build="1163093898"/>
      <size package="7299652" installed="25996112" archive="26021480"/>
      <location xml:base="media://#1" href="suse/i586/ethereal-0.10.14-16.11.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="ethereal" epoch="0" ver="0.10.14" rel="16.11" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="ethereal"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
  </atoms>
</patch>
