41 results (0.002 seconds)

CVSS: 7.5EPSS: 3%CPEs: 69EXPL: 0

23 Nov 2007 — Multiple unspecified vulnerabilities in Wireshark (formerly Ethereal) allow remote attackers to cause a denial of service (crash) via (1) a crafted MP3 file or (2) unspecified vectors to the NCP dissector. Múltiples vulnerabilidades no especificadas en Wireshark (formalmente Ethereal) que permiten que atacantes remotos provoquen una denegación de servicio (por caída) usando: (1) un fichero MP3 manipulado, o (2) vectores no especificados en el NCP dissector. • http://bugs.gentoo.org/show_bug.cgi?id=199958 •

CVSS: 7.5EPSS: 2%CPEs: 45EXPL: 0

23 Nov 2007 — The Bluetooth SDP dissector Wireshark (formerly Ethereal) 0.99.2 to 0.99.6 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors. El Bluetooth SDP dissector Wireshark (formalmente Ethereal), desde la versión 0.99.2 a la 0.99.6, permite que atacantes remotos provoquen una denegación de servicio(por bucle infinito) usando vectores desconocidos. • http://bugs.gentoo.org/show_bug.cgi?id=199958 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 7.5EPSS: 6%CPEs: 53EXPL: 0

25 Apr 2006 — Multiple unspecified vulnerabilities in Ethereal 0.8.x up to 0.10.14 allow remote attackers to cause a denial of service (crash from null dereference) via the (1) Sniffer capture or (2) SMB PIPE dissector. • ftp://patches.sgi.com/support/free/security/advisories/20060501-01-U.asc •

CVSS: 9.8EPSS: 5%CPEs: 39EXPL: 0

10 Dec 2005 — Stack-based buffer overflow in the dissect_ospf_v3_address_prefix function in the OSPF protocol dissector in Ethereal 0.10.12, and possibly other versions, allows remote attackers to execute arbitrary code via crafted packets. • ftp://patches.sgi.com/support/free/security/advisories/20060201-01-U •

CVSS: 7.5EPSS: 3%CPEs: 39EXPL: 0

01 Nov 2005 — The IRC protocol dissector in Ethereal 0.10.13 allows remote attackers to cause a denial of service (infinite loop). • ftp://patches.sgi.com/support/free/security/advisories/20060201-01-U •

CVSS: 10.0EPSS: 3%CPEs: 1EXPL: 0

20 Oct 2005 — Buffer overflow vulnerability in the unicode_to_bytes in the Service Location Protocol (srvloc) dissector (packet-srvloc.c) in Ethereal allows remote attackers to execute arbitrary code via a srvloc packet with a modified length value. • http://secunia.com/advisories/17254 •

CVSS: 7.5EPSS: 1%CPEs: 45EXPL: 0

10 Aug 2005 — Unknown vulnerability in the LDAP dissector in Ethereal 0.8.5 through 0.10.11 allows remote attackers to cause a denial of service (free static memory and application crash) via unknown attack vectors. • http://secunia.com/advisories/16225 •

CVSS: 7.5EPSS: 1%CPEs: 34EXPL: 0

05 May 2005 — Multiple unknown vulnerabilities in the (1) DHCP and (2) Telnet dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (abort). • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000963 •

CVSS: 7.5EPSS: 1%CPEs: 34EXPL: 0

05 May 2005 — Multiple unknown vulnerabilities in the (1) AIM, (2) LDAP, (3) FibreChannel, (4) GSM_MAP, (5) SRVLOC, and (6) NTLMSSP dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash). • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000963 •

CVSS: 9.8EPSS: 0%CPEs: 34EXPL: 0

05 May 2005 — Multiple unknown "other problems" in the KINK dissector in Ethereal before 0.10.11 have unknown impact and attack vectors. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000963 •