7.5
CVSSv2

CVE-2002-0401

Published: 18/06/2002 Updated: 16/02/2024
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SMB dissector in Ethereal 0.9.3 and previous versions allows remote malicious users to cause a denial of service (crash) or execute arbitrary code via malformed packets that cause Ethereal to dereference a NULL pointer.

Vulnerable Product Search on Vulmon Subscribe to Product

ethereal ethereal

debian debian linux 2.2

Vendor Advisories

Ethereal versions prior to 093 were vulnerable to an allocation error in the ASN1 parser This can be triggered when analyzing traffic using the SNMP, LDAP, COPS, or Kerberos protocols in ethereal This vulnerability was announced in the ethereal security advisory enpa-sa-00003 This issue has been corrected in ethereal version 080-3potato for ...