{"schema_version":"1.7.3","id":"openSUSE-SU-2021:2125-1","published":"2021-07-10T08:56:57Z","modified":"2026-02-04T03:49:31.093819Z","related":["CVE-2020-26418","CVE-2020-26419","CVE-2020-26420","CVE-2020-26421","CVE-2020-26422","CVE-2021-22173","CVE-2021-22174","CVE-2021-22191","CVE-2021-22207"],"upstream":["CVE-2020-26418","CVE-2020-26419","CVE-2020-26420","CVE-2020-26421","CVE-2020-26422","CVE-2021-22173","CVE-2021-22174","CVE-2021-22191","CVE-2021-22207"],"summary":"Security update for wireshark","details":"This update for wireshark, libvirt, sbc and libqt5-qtmultimedia fixes the following issues:\n\nUpdate wireshark to version 3.4.5\n\n- New and updated support and bug fixes for multiple protocols\n- Asynchronous DNS resolution is always enabled\n- Protobuf fields can be dissected as Wireshark (header) fields\n- UI improvements\n\nIncluding security fixes for:\n\n- CVE-2021-22191: Wireshark could open unsafe URLs (bsc#1183353).\n- CVE-2021-22207: MS-WSP dissector excessive memory consumption (bsc#1185128)\n- CVE-2020-26422: QUIC dissector crash (bsc#1180232)\n- CVE-2020-26418: Kafka dissector memory leak (bsc#1179930)\n- CVE-2020-26419: Multiple dissector memory leaks (bsc#1179931)\n- CVE-2020-26420: RTPS dissector memory leak (bsc#1179932) \n- CVE-2020-26421: USB HID dissector crash (bsc#1179933)\n- CVE-2021-22173: Fix USB HID dissector memory leak (bsc#1181598)\n- CVE-2021-22174: Fix USB HID dissector crash (bsc#1181599)\n\nlibqt5-qtmultimedia and sbc are necessary dependencies. libvirt is needed to rebuild wireshark-plugin-libvirt.\n","affected":[{"package":{"name":"sbc","ecosystem":"openSUSE:Leap 15.3","purl":"pkg:rpm/opensuse/sbc&distro=openSUSE%20Leap%2015.3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.3-3.2.1"}]}],"ecosystem_specific":{"binaries":[{"libsbc1":"1.3-3.2.1","libsbc1-32bit":"1.3-3.2.1","libwireshark14":"3.4.5-3.53.1","libwiretap11":"3.4.5-3.53.1","libwsutil12":"3.4.5-3.53.1","sbc":"1.3-3.2.1","sbc-devel":"1.3-3.2.1","wireshark":"3.4.5-3.53.1","wireshark-devel":"3.4.5-3.53.1","wireshark-ui-qt":"3.4.5-3.53.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2021:2125-1.json"}},{"package":{"name":"wireshark","ecosystem":"openSUSE:Leap 15.3","purl":"pkg:rpm/opensuse/wireshark&distro=openSUSE%20Leap%2015.3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.4.5-3.53.1"}]}],"ecosystem_specific":{"binaries":[{"libsbc1":"1.3-3.2.1","libsbc1-32bit":"1.3-3.2.1","libwireshark14":"3.4.5-3.53.1","libwiretap11":"3.4.5-3.53.1","libwsutil12":"3.4.5-3.53.1","sbc":"1.3-3.2.1","sbc-devel":"1.3-3.2.1","wireshark":"3.4.5-3.53.1","wireshark-devel":"3.4.5-3.53.1","wireshark-ui-qt":"3.4.5-3.53.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2021:2125-1.json"}}],"references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/EZGXWOFRVD3EFRZ6YDAJZEVPBP7IUHFI/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1179930"},{"type":"REPORT","url":"https://bugzilla.suse.com/1179931"},{"type":"REPORT","url":"https://bugzilla.suse.com/1179932"},{"type":"REPORT","url":"https://bugzilla.suse.com/1179933"},{"type":"REPORT","url":"https://bugzilla.suse.com/1180102"},{"type":"REPORT","url":"https://bugzilla.suse.com/1180232"},{"type":"REPORT","url":"https://bugzilla.suse.com/1181598"},{"type":"REPORT","url":"https://bugzilla.suse.com/1181599"},{"type":"REPORT","url":"https://bugzilla.suse.com/1183353"},{"type":"REPORT","url":"https://bugzilla.suse.com/1184110"},{"type":"REPORT","url":"https://bugzilla.suse.com/1185128"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-26418"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-26419"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-26420"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-26421"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-26422"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-22173"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-22174"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-22191"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-22207"}]}