CVE-2006-1934

critical

Description

Multiple buffer overflows in Ethereal 0.10.x up to 0.10.14 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the (1) ALCAP dissector, (2) Network Instruments file code, or (3) NetXray/Windows Sniffer file code.

References

https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10445

https://exchange.xforce.ibmcloud.com/vulnerabilities/26027

https://exchange.xforce.ibmcloud.com/vulnerabilities/26026

https://exchange.xforce.ibmcloud.com/vulnerabilities/26014

http://www.vupen.com/english/advisories/2006/1501

http://www.securityfocus.com/bid/17682

http://www.redhat.com/support/errata/RHSA-2006-0420.html

http://www.redhat.com/archives/fedora-announce-list/2006-April/msg00195.html

http://www.redhat.com/archives/fedora-announce-list/2006-April/msg00194.html

http://www.mandriva.com/security/advisories?name=MDKSA-2006:077

http://www.gentoo.org/security/en/glsa/glsa-200604-17.xml

http://www.ethereal.com/appnotes/enpa-sa-00023.html

http://www.debian.org/security/2006/dsa-1049

http://support.avaya.com/elmodocs2/security/ASA-2006-128.htm

http://securitytracker.com/id?1015985

http://secunia.com/advisories/20944

http://secunia.com/advisories/20210

http://secunia.com/advisories/20117

http://secunia.com/advisories/19962

http://secunia.com/advisories/19958

http://secunia.com/advisories/19839

http://secunia.com/advisories/19828

http://secunia.com/advisories/19805

http://secunia.com/advisories/19769

http://lists.suse.com/archive/suse-security-announce/2006-May/0004.html

Details

Source: Mitre, NVD

Published: 2006-04-25

Updated: 2024-02-14

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Severity: Medium

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical