5
CVSSv2

CVE-2004-0634

Published: 06/12/2004 Updated: 14/02/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The SMB SID snooping capability in Ethereal 0.9.15 to 0.10.4 allows remote malicious users to cause a denial of service (process crash) via a handle without a policy name, which causes a null dereference.

Vulnerable Product Search on Vulmon Subscribe to Product

ethereal group ethereal 0.9.15

ethereal group ethereal 0.10.4

redhat enterprise linux 3.0

redhat enterprise linux 2.1

redhat linux advanced workstation 2.1

mandrakesoft mandrake linux 9.2

mandrakesoft mandrake linux 10.0

gentoo linux

Vendor Advisories

Synopsis ethereal security update Type/Severity Security Advisory: Moderate Topic Updated Ethereal packages that fix various security vulnerabilities are nowavailable Description Ethereal is a program for monitoring network trafficThe SNMP dissector in Ethereal releases 0815 through 01 ...