5
CVSSv2

CVE-2006-4805

Published: 27/10/2006 Updated: 17/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

epan/dissectors/packet-xot.c in the XOT dissector (dissect_xot_pdu) in Wireshark (formerly Ethereal) 0.9.8 up to and including 0.99.3 allows remote malicious users to cause a denial of service (memory consumption and crash) via an encoded XOT packet that produces a zero length value when it is decoded.

Vulnerable Product Search on Vulmon Subscribe to Product

wireshark wireshark 0.9.10

wireshark wireshark 0.9.8

wireshark wireshark 0.10.13

wireshark wireshark 0.10.4

wireshark wireshark 0.10

wireshark wireshark 0.99.2

wireshark wireshark 0.99.3

wireshark wireshark 0.99

wireshark wireshark 0.99.1

Vendor Advisories

Debian Bug report logs - #396258 multiple wireshark security issues fixed in 0994 Package: wireshark; Maintainer for wireshark is Balint Reczey <rbalint@ubuntucom>; Source for wireshark is src:wireshark (PTS, buildd, popcon) Reported by: Stefan Fritsch <sf@sfritschde> Date: Mon, 30 Oct 2006 20:48:12 UTC Severity ...
Several remote vulnerabilities have been discovered in the Ethereal network scanner The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2005-4574 It was discovered that the MIME multipart dissector is vulnerable to denial of service caused by an off-by-one overflow CVE-2006-4805 It was discovered t ...