5
CVSSv2

CVE-2002-0403

Published: 18/06/2002 Updated: 14/02/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

DNS dissector in Ethereal prior to 0.9.3 allows remote malicious users to cause a denial of service (CPU consumption) via a malformed packet that causes Ethereal to enter an infinite loop.

Vulnerable Product Search on Vulmon Subscribe to Product

ethereal group ethereal 0.9.2

ethereal group ethereal 0.9_.0

ethereal group ethereal 0.9.3

ethereal group ethereal 0.9.1

Vendor Advisories

Ethereal versions prior to 093 were vulnerable to an allocation error in the ASN1 parser This can be triggered when analyzing traffic using the SNMP, LDAP, COPS, or Kerberos protocols in ethereal This vulnerability was announced in the ethereal security advisory enpa-sa-00003 This issue has been corrected in ethereal version 080-3potato for ...