Package: debian-security-support
Severity: normal

Hi,

As the maintainer of wireshark I still plan continuing back-porting
security fixes for Squeeze's wireshark package, but I can't honestly
say that it is safe to run even the fixed versions.  Squeeze had been
released with Wireshark 1.2.11 but upstream stopped providing official
security updates for that branch years ago.

Currently security fixes are provided for 1.10.x and 1.12.x versions
which I back-port to Wheezy and Squeeze when their version is
affected, but there can be many hidden issues, especially in Squeeze.

I will still fix all issues in dumpcap from the wireshark-common
package, thus Debian LTS users can still capture traffic safely, but
analysis should be performed using a later Wireshark version.

Cheers,
Balint


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to