Mandriva Linux Security Advisory 2009-292 – Vulnerabilities have been discovered and corrected in wireshark, affecting DCERPC/NT dissector, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a file that records a malformed packet trace and in wiretap/erf.c which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted erf file. The wireshark package has been updated to fix these vulnerabilities.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/82437/MDVSA-2009-292.txt
Source: https://packetstormsecurity.com/files/82437/Mandriva-Linux-Security-Advisory-2009-292.html

