CVE-2006-1934
NONE EPSS 91.2%
Published Apr 25, 200620y ago · Modified Jun 16, 20262w ago
Published Apr 25, 2006 20y ago
Last Modified Jun 16, 2026 2w ago
Description
Multiple buffer overflows in Ethereal 0.10.x up to 0.10.14 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the (1) ALCAP dissector, (2) Network Instruments file code, or (3) NetXray/Windows Sniffer file code.
Threat Intelligence
EPSS Exploit Probability
91.2% percentile
Exploit & Patch Status
No Known Exploit
Patch Available
Affected Products 16
| Vendor | Product | Version | Range |
|---|---|---|---|
| ethereal_group | ethereal | 0.10 | any |
| ethereal_group | ethereal | 0.10.0 | any |
| ethereal_group | ethereal | 0.10.0a | any |
| ethereal_group | ethereal | 0.10.1 | any |
| ethereal_group | ethereal | 0.10.2 | any |
| ethereal_group | ethereal | 0.10.3 | any |
| ethereal_group | ethereal | 0.10.4 | any |
| ethereal_group | ethereal | 0.10.5 | any |
| ethereal_group | ethereal | 0.10.6 | any |
| ethereal_group | ethereal | 0.10.7 | any |
| ethereal_group | ethereal | 0.10.8 | any |
| ethereal_group | ethereal | 0.10.9 | any |
| ethereal_group | ethereal | 0.10.10 | any |
| ethereal_group | ethereal | 0.10.11 | any |
| ethereal_group | ethereal | 0.10.12 | any |
| ethereal_group | ethereal | 0.10.13 | any |
References 26
- patches.sgi.com ftp://patches.sgi.com/support/free/security/advisories/20060501-01-U.asc
- lists.suse.com http://lists.suse.com/archive/suse-security-announce/2006-May/0004.html
- secunia.com http://secunia.com/advisories/19769
- secunia.com http://secunia.com/advisories/19805
- secunia.com http://secunia.com/advisories/19828
- secunia.com http://secunia.com/advisories/19839
- secunia.com http://secunia.com/advisories/19958
- secunia.com http://secunia.com/advisories/19962
- secunia.com http://secunia.com/advisories/20117
- secunia.com http://secunia.com/advisories/20210
- secunia.com http://secunia.com/advisories/20944
- securitytracker.com http://securitytracker.com/id?1015985
- support.avaya.com http://support.avaya.com/elmodocs2/security/ASA-2006-128.htm
- debian.org http://www.debian.org/security/2006/dsa-1049
- ethereal.com http://www.ethereal.com/appnotes/enpa-sa-00023.html
- gentoo.org http://www.gentoo.org/security/en/glsa/glsa-200604-17.xml
- mandriva.com http://www.mandriva.com/security/advisories?name=MDKSA-2006:077
- redhat.com http://www.redhat.com/archives/fedora-announce-list/2006-April/msg00194.html
- redhat.com http://www.redhat.com/archives/fedora-announce-list/2006-April/msg00195.html
- redhat.com http://www.redhat.com/support/errata/RHSA-2006-0420.html
- securityfocus.com http://www.securityfocus.com/bid/17682
- vupen.com http://www.vupen.com/english/advisories/2006/1501
- exchange.xforce.ibmcloud.com https://exchange.xforce.ibmcloud.com/vulnerabilities/26014
- exchange.xforce.ibmcloud.com https://exchange.xforce.ibmcloud.com/vulnerabilities/26026
- exchange.xforce.ibmcloud.com https://exchange.xforce.ibmcloud.com/vulnerabilities/26027
- oval.cisecurity.org https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10445
Remediation
- ethereal.com http://www.ethereal.com/appnotes/enpa-sa-00023.html