7.5
CVSSv2

CVE-2000-1174

Published: 09/01/2001 Updated: 10/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple buffer overflows in AFS ACL parser for Ethereal 0.8.13 and previous versions allows remote malicious users to execute arbitrary commands via a packet with a long username.

Vulnerable Product Search on Vulmon Subscribe to Product

ethereal group ethereal

Exploits

/* source: wwwsecurityfocuscom/bid/1972/info Ethereal is a network auditing utility originally written by Gerald Combs A problem exists in the Ethereal package which can allow a remote user to execute code The problem exists in the AFS packet parsing routine An algorithm string scans the contents of a packet into a predefined buffer, ...