Oval Definition:oval:com.redhat.rhsa:def:20050427
Revision Date:2005-05-24Version:502
Title:RHSA-2005:427: ethereal security update (Moderate)
Description:The ethereal package is a program for monitoring network traffic.

A number of security flaws have been discovered in Ethereal. On a system where Ethereal is running, a remote attacker could send malicious packets to trigger these flaws and cause Ethereal to crash or potentially execute arbitrary code. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the names CAN-2005-1456, CAN-2005-1457, CAN-2005-1458, CAN-2005-1459, CAN-2005-1460, CAN-2005-1461, CAN-2005-1462, CAN-2005-1463, CAN-2005-1464, CAN-2005-1465, CAN-2005-1466, CAN-2005-1467, CAN-2005-1468, CAN-2005-1469, and CAN-2005-1470 to these issues.

Users of ethereal should upgrade to these updated packages, which contain version 0.10.11 which is not vulnerable to these issues.
Family:unixClass:patch
Status:Reference(s):CVE-2005-1456
CVE-2005-1457
CVE-2005-1458
CVE-2005-1459
CVE-2005-1460
CVE-2005-1461
CVE-2005-1462
CVE-2005-1463
CVE-2005-1464
CVE-2005-1465
CVE-2005-1466
CVE-2005-1467
CVE-2005-1468
CVE-2005-1469
CVE-2005-1470
RHSA-2005:427-01
Platform(s):Red Hat Enterprise Linux 3
Red Hat Enterprise Linux 4
Product(s):
Definition Synopsis
  • Release Information
  • Red Hat Enterprise Linux 3 is installed
  • AND
  • ethereal-gnome is earlier than 0:0.10.11-1.EL3.1
  • AND ethereal-gnome is signed with Red Hat master key
  • ethereal is earlier than 0:0.10.11-1.EL3.1
  • AND ethereal is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • ethereal-gnome is earlier than 0:0.10.11-1.EL4.1
  • AND ethereal-gnome is signed with Red Hat master key
  • ethereal is earlier than 0:0.10.11-1.EL4.1
  • AND ethereal is signed with Red Hat master key
  • BACK