5
CVSSv2

CVE-2004-0633

Published: 06/12/2004 Updated: 14/02/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The iSNS dissector for Ethereal 0.10.3 up to and including 0.10.4 allows remote malicious users to cause a denial of service (process abort) via an integer overflow.

Vulnerable Product Search on Vulmon Subscribe to Product

ethereal group ethereal 0.10.3

ethereal group ethereal 0.10.4

redhat enterprise linux 3.0

redhat enterprise linux 2.1

redhat linux advanced workstation 2.1

mandrakesoft mandrake linux 9.2

mandrakesoft mandrake linux 10.0

gentoo linux

Vendor Advisories

Synopsis ethereal security update Type/Severity Security Advisory: Moderate Topic Updated Ethereal packages that fix various security vulnerabilities are nowavailable Description Ethereal is a program for monitoring network trafficThe SNMP dissector in Ethereal releases 0815 through 01 ...

Exploits

source: wwwsecurityfocuscom/bid/10672/info Ethereal 0105 has been released to address multiple vulnerabilities, including an iSNS protocol dissector vulnerability, a SMB protocol dissector vulnerability, and a SNMP protocol dissector vulnerability These issues are due to a failure of the application to properly handle malformed packe ...