5
CVSSv2

CVE-2006-1939

Published: 25/04/2006 Updated: 14/02/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Multiple unspecified vulnerabilities in Ethereal 0.9.x up to 0.10.14 allow remote malicious users to cause a denial of service (crash from null dereference) via (1) an invalid display filter, or the (2) GSM SMS, (3) ASN.1-based, (4) DCERPC NT, (5) PER, (6) RPC, (7) DCERPC, and (8) ASN.1 dissectors.

Vulnerable Product Search on Vulmon Subscribe to Product

ethereal group ethereal 0.10.1

ethereal group ethereal 0.9.2

ethereal group ethereal 0.9.6

ethereal group ethereal 0.10.0a

ethereal group ethereal 0.10.10

ethereal group ethereal 0.9.5

ethereal group ethereal 0.10.2

ethereal group ethereal 0.9.14

ethereal group ethereal 0.9.0

ethereal group ethereal 0.9.15

ethereal group ethereal 0.9.10

ethereal group ethereal 0.9_.0

ethereal group ethereal 0.10.13

ethereal group ethereal 0.9.8

ethereal group ethereal 0.10.3

ethereal group ethereal 0.10.4

ethereal group ethereal 0.10.7

ethereal group ethereal 0.9.16

ethereal group ethereal 0.10.12

ethereal group ethereal 0.10.11

ethereal group ethereal 0.10.5

ethereal group ethereal 0.10.0

ethereal group ethereal 0.9.3

ethereal group ethereal 0.10

ethereal group ethereal 0.9.13

ethereal group ethereal 0.9.9

ethereal group ethereal 0.9.11

ethereal group ethereal 0.9.7

ethereal group ethereal 0.9.4

ethereal group ethereal 0.9.1

ethereal group ethereal 0.10.6

ethereal group ethereal 0.10.8

ethereal group ethereal 0.10.9

ethereal group ethereal 0.9

ethereal group ethereal 0.9.12

Vendor Advisories

Gerald Combs reported several vulnerabilities in ethereal, a popular network traffic analyser The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2006-1932 The OID printing routine is susceptible to an off-by-one error CVE-2006-1933 The UMA and BER dissectors could go into an infinite loop CVE-2006-1 ...

References

NVD-CWE-Otherhttp://www.ethereal.com/appnotes/enpa-sa-00023.htmlhttp://www.securityfocus.com/bid/17682http://secunia.com/advisories/19769http://www.redhat.com/archives/fedora-announce-list/2006-April/msg00194.htmlhttp://www.redhat.com/archives/fedora-announce-list/2006-April/msg00195.htmlhttp://www.gentoo.org/security/en/glsa/glsa-200604-17.xmlhttp://securitytracker.com/id?1015985http://secunia.com/advisories/19805http://secunia.com/advisories/19828http://secunia.com/advisories/19839http://www.debian.org/security/2006/dsa-1049http://www.redhat.com/support/errata/RHSA-2006-0420.htmlhttp://secunia.com/advisories/19958http://secunia.com/advisories/19962http://lists.suse.com/archive/suse-security-announce/2006-May/0004.htmlhttp://secunia.com/advisories/20117http://support.avaya.com/elmodocs2/security/ASA-2006-128.htmhttp://secunia.com/advisories/20944ftp://patches.sgi.com/support/free/security/advisories/20060501-01-U.aschttp://secunia.com/advisories/20210http://www.mandriva.com/security/advisories?name=MDKSA-2006:077http://www.vupen.com/english/advisories/2006/1501https://exchange.xforce.ibmcloud.com/vulnerabilities/26033https://exchange.xforce.ibmcloud.com/vulnerabilities/26032https://exchange.xforce.ibmcloud.com/vulnerabilities/26030https://exchange.xforce.ibmcloud.com/vulnerabilities/26028https://exchange.xforce.ibmcloud.com/vulnerabilities/26022https://exchange.xforce.ibmcloud.com/vulnerabilities/26021https://exchange.xforce.ibmcloud.com/vulnerabilities/26020https://exchange.xforce.ibmcloud.com/vulnerabilities/26017https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11030https://www.debian.org/security/./dsa-1049https://nvd.nist.gov