Ethereal
Source repositories
CVEs (141)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2006-1939 | 0.00 | — | 0.03 | Apr 25, 2006 | Multiple unspecified vulnerabilities in Ethereal 0.9.x up to 0.10.14 allow remote attackers to cause a denial of service (crash from null dereference) via (1) an invalid display filter, or the (2) GSM SMS, (3) ASN.1-based, (4) DCERPC NT, (5) PER, (6) RPC, (7) DCERPC, and (8)… | |||
| CVE-2006-1934 | 0.00 | — | 0.05 | Apr 25, 2006 | Multiple buffer overflows in Ethereal 0.10.x up to 0.10.14 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the (1) ALCAP dissector, (2) Network Instruments file code, or (3) NetXray/Windows Sniffer file code. | |||
| CVE-2006-1932 | 0.00 | — | 0.03 | Apr 25, 2006 | Off-by-one error in the OID printing routine in Ethereal 0.10.x up to 0.10.14 has unknown impact and remote attack vectors. | |||
| CVE-2006-1933 | 0.00 | — | 0.04 | Apr 25, 2006 | Multiple unspecified vulnerabilities in Ethereal 0.10.x up to 0.10.14 allow remote attackers to cause a denial of service (large or infinite loops) viarafted packets to the (1) UMA and (2) BER dissectors. | |||
| CVE-2006-1936 | 0.00 | — | 0.04 | Apr 25, 2006 | Buffer overflow in Ethereal 0.8.5 up to 0.10.14 allows remote attackers to execute arbitrary code via the telnet dissector. | |||
| CVE-2006-1940 | 0.00 | — | 0.03 | Apr 25, 2006 | Unspecified vulnerability in Ethereal 0.10.4 up to 0.10.14 allows remote attackers to cause a denial of service (abort) via the SNDCP dissector. | |||
| CVE-2006-1935 | 0.00 | — | 0.05 | Apr 25, 2006 | Buffer overflow in Ethereal 0.9.15 up to 0.10.14 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the COPS dissector. | |||
| CVE-2005-4585 | 0.00 | — | 0.04 | Dec 29, 2005 | Unspecified vulnerability in the GTP dissector for Ethereal 0.9.1 to 0.10.13 allows remote attackers to cause a denial of service (infinite loop) via unknown attack vectors. | |||
| CVE-2005-3651 | 0.00 | — | 0.06 | Dec 10, 2005 | Stack-based buffer overflow in the dissect_ospf_v3_address_prefix function in the OSPF protocol dissector in Ethereal 0.10.12, and possibly other versions, allows remote attackers to execute arbitrary code via crafted packets. | |||
| CVE-2005-3313 | 0.00 | — | 0.04 | Nov 1, 2005 | The IRC protocol dissector in Ethereal 0.10.13 allows remote attackers to cause a denial of service (infinite loop). | |||
| CVE-2005-3244 | 0.00 | — | 0.04 | Oct 27, 2005 | The BER dissector in Ethereal 0.10.3 to 0.10.12 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors. | |||
| CVE-2005-3245 | 0.00 | — | 0.03 | Oct 27, 2005 | Unspecified vulnerability in the ONC RPC dissector in Ethereal 0.10.3 to 0.10.12, when the "Dissect unknown RPC program numbers" option is enabled, allows remote attackers to cause a denial of service (memory consumption). | |||
| CVE-2005-3241 | 0.00 | — | 0.04 | Oct 27, 2005 | Multiple vulnerabilities in Ethereal 0.10.12 and earlier allow remote attackers to cause a denial of service (memory consumption) via unspecified vectors in the (1) ISAKMP, (2) FC-FCS, (3) RSVP, and (4) ISIS LSP dissector. | |||
| CVE-2005-3246 | 0.00 | — | 0.03 | Oct 27, 2005 | Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (null dereference) via unknown vectors in the (1) SCSI, (2) sFlow, or (3) RTnet dissectors. | |||
| CVE-2005-3249 | 0.00 | — | 0.03 | Oct 27, 2005 | Unspecified vulnerability in the WSP dissector in Ethereal 0.10.1 to 0.10.12 allows remote attackers to cause a denial of service or corrupt memory via unknown vectors that cause Ethereal to free an invalid pointer. | |||
| CVE-2005-3247 | 0.00 | — | 0.04 | Oct 27, 2005 | The SigComp UDVM in Ethereal 0.10.12 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors. | |||
| CVE-2005-3242 | 0.00 | — | 0.03 | Oct 27, 2005 | Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (crash) via unknown vectors in (1) the IrDA dissector and (2) the SMB dissector when SMB transaction payload reassembly is enabled. | |||
| CVE-2005-3248 | 0.00 | — | 0.03 | Oct 27, 2005 | Unspecified vulnerability in the X11 dissector in Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (divide-by-zero) via unknown vectors. | |||
| CVE-2005-2362 | 0.00 | — | 0.02 | Aug 10, 2005 | Unknown vulnerability several dissectors in Ethereal 0.9.0 through 0.10.11 allows remote attackers to cause a denial of service (application crash) by reassembling certain packets. | |||
| CVE-2005-2366 | 0.00 | — | 0.03 | Aug 10, 2005 | Unknown vulnerability in the BER dissector in Ethereal 0.10.11 allows remote attackers to cause a denial of service (abort or infinite loop) via unknown attack vectors. |
- CVE-2006-1939Apr 25, 2006risk 0.00cvss —epss 0.03
Multiple unspecified vulnerabilities in Ethereal 0.9.x up to 0.10.14 allow remote attackers to cause a denial of service (crash from null dereference) via (1) an invalid display filter, or the (2) GSM SMS, (3) ASN.1-based, (4) DCERPC NT, (5) PER, (6) RPC, (7) DCERPC, and (8)…
- CVE-2006-1934Apr 25, 2006risk 0.00cvss —epss 0.05
Multiple buffer overflows in Ethereal 0.10.x up to 0.10.14 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the (1) ALCAP dissector, (2) Network Instruments file code, or (3) NetXray/Windows Sniffer file code.
- CVE-2006-1932Apr 25, 2006risk 0.00cvss —epss 0.03
Off-by-one error in the OID printing routine in Ethereal 0.10.x up to 0.10.14 has unknown impact and remote attack vectors.
- CVE-2006-1933Apr 25, 2006risk 0.00cvss —epss 0.04
Multiple unspecified vulnerabilities in Ethereal 0.10.x up to 0.10.14 allow remote attackers to cause a denial of service (large or infinite loops) viarafted packets to the (1) UMA and (2) BER dissectors.
- CVE-2006-1936Apr 25, 2006risk 0.00cvss —epss 0.04
Buffer overflow in Ethereal 0.8.5 up to 0.10.14 allows remote attackers to execute arbitrary code via the telnet dissector.
- CVE-2006-1940Apr 25, 2006risk 0.00cvss —epss 0.03
Unspecified vulnerability in Ethereal 0.10.4 up to 0.10.14 allows remote attackers to cause a denial of service (abort) via the SNDCP dissector.
- CVE-2006-1935Apr 25, 2006risk 0.00cvss —epss 0.05
Buffer overflow in Ethereal 0.9.15 up to 0.10.14 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the COPS dissector.
- CVE-2005-4585Dec 29, 2005risk 0.00cvss —epss 0.04
Unspecified vulnerability in the GTP dissector for Ethereal 0.9.1 to 0.10.13 allows remote attackers to cause a denial of service (infinite loop) via unknown attack vectors.
- CVE-2005-3651Dec 10, 2005risk 0.00cvss —epss 0.06
Stack-based buffer overflow in the dissect_ospf_v3_address_prefix function in the OSPF protocol dissector in Ethereal 0.10.12, and possibly other versions, allows remote attackers to execute arbitrary code via crafted packets.
- CVE-2005-3313Nov 1, 2005risk 0.00cvss —epss 0.04
The IRC protocol dissector in Ethereal 0.10.13 allows remote attackers to cause a denial of service (infinite loop).
- CVE-2005-3244Oct 27, 2005risk 0.00cvss —epss 0.04
The BER dissector in Ethereal 0.10.3 to 0.10.12 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors.
- CVE-2005-3245Oct 27, 2005risk 0.00cvss —epss 0.03
Unspecified vulnerability in the ONC RPC dissector in Ethereal 0.10.3 to 0.10.12, when the "Dissect unknown RPC program numbers" option is enabled, allows remote attackers to cause a denial of service (memory consumption).
- CVE-2005-3241Oct 27, 2005risk 0.00cvss —epss 0.04
Multiple vulnerabilities in Ethereal 0.10.12 and earlier allow remote attackers to cause a denial of service (memory consumption) via unspecified vectors in the (1) ISAKMP, (2) FC-FCS, (3) RSVP, and (4) ISIS LSP dissector.
- CVE-2005-3246Oct 27, 2005risk 0.00cvss —epss 0.03
Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (null dereference) via unknown vectors in the (1) SCSI, (2) sFlow, or (3) RTnet dissectors.
- CVE-2005-3249Oct 27, 2005risk 0.00cvss —epss 0.03
Unspecified vulnerability in the WSP dissector in Ethereal 0.10.1 to 0.10.12 allows remote attackers to cause a denial of service or corrupt memory via unknown vectors that cause Ethereal to free an invalid pointer.
- CVE-2005-3247Oct 27, 2005risk 0.00cvss —epss 0.04
The SigComp UDVM in Ethereal 0.10.12 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors.
- CVE-2005-3242Oct 27, 2005risk 0.00cvss —epss 0.03
Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (crash) via unknown vectors in (1) the IrDA dissector and (2) the SMB dissector when SMB transaction payload reassembly is enabled.
- CVE-2005-3248Oct 27, 2005risk 0.00cvss —epss 0.03
Unspecified vulnerability in the X11 dissector in Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (divide-by-zero) via unknown vectors.
- CVE-2005-2362Aug 10, 2005risk 0.00cvss —epss 0.02
Unknown vulnerability several dissectors in Ethereal 0.9.0 through 0.10.11 allows remote attackers to cause a denial of service (application crash) by reassembling certain packets.
- CVE-2005-2366Aug 10, 2005risk 0.00cvss —epss 0.03
Unknown vulnerability in the BER dissector in Ethereal 0.10.11 allows remote attackers to cause a denial of service (abort or infinite loop) via unknown attack vectors.
Page 4 of 8