Unrated severityNVD Advisory· Published Dec 23, 2002· Updated Jun 16, 2026
CVE-2002-1356
CVE-2002-1356
Description
Ethereal 0.9.7 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via malformed packets to the (1) LMP, (2) PPP, or (3) TDS dissectors, possibly related to a missing field for EndVerifyAck messages.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:ethereal_group:ethereal:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:ethereal_group:ethereal:*:*:*:*:*:*:*:*range: <=0.9.7
- (no CPE)range: <=0.9.7
Patches
Vulnerability mechanics
References
3- www.ethereal.com/appnotes/enpa-sa-00007.htmlnvdPatchVendor AdvisoryURL Repurposed
- www.redhat.com/support/errata/RHSA-2002-290.htmlnvdPatchVendor Advisory
- www.ethereal.com/cgi-bin/viewcvs.cgi/ethereal/packet-lmp.cnvdURL Repurposed
News mentions
0No linked articles in our index yet.