Author: ken
Date: Wed Feb  3 18:56:49 2021
New Revision: 24169

Log:
Wireshark - for editors, note where their security advisories are, we have 
missed at least the items fixed in 3.4.0.

Modified:
   trunk/BOOK/networking/netutils/wireshark.xml

Modified: trunk/BOOK/networking/netutils/wireshark.xml
==============================================================================
--- trunk/BOOK/networking/netutils/wireshark.xml        Tue Feb  2 16:38:11 
2021        (r24168)
+++ trunk/BOOK/networking/netutils/wireshark.xml        Wed Feb  3 18:56:49 
2021        (r24169)
@@ -12,6 +12,15 @@
   <!ENTITY wireshark-time          "2.4 SBU (with parallelism=4 and all 
optional dependencies available in the BLFS book)">
 ]>
 
+<!-- Gentler reminder: many Wireshark releases contain vulnerability fixes,
+ we have not always been aware of these. At https://www.wireshark.org/security/
+ there is a list of advisories and the version in which they were fixed.
+
+ If you click on an advisory, after the bug number in the References:
+ there may be a CVE number, although perhaps those get added some time after
+ the release.  Perhaps as a general rule treat ALL their advisories for crashes
+ etc as worthy of a security fix. -->
+
 <sect1 id="wireshark" xreflabel="Wireshark-&wireshark-version;">
   <?dbhtml filename="wireshark.html"?>
 
-- 
http://lists.linuxfromscratch.org/listinfo/blfs-book
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page

Reply via email to