Vulnerability Name: | CVE-2005-1461 (CCN-20447) | ||||||||||||
Assigned: | 2005-05-04 | ||||||||||||
Published: | 2005-05-04 | ||||||||||||
Updated: | 2017-10-11 | ||||||||||||
Summary: | Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Presentation dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code. | ||||||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Type: | CWE-Other | ||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||
References: | Source: CCN Type: Full-Disclosure Mailing List, Sat May 07 2005 - 20:08:38 CDT Ethereal 0.10.10 SIP Dissector Overflow Source: MITRE Type: CNA CVE-2005-1461 Source: CONECTIVA Type: UNKNOWN CLSA-2005:963 Source: CCN Type: Conectiva Linux Security Announcement CLSA-2005:963 Fixes for miltiple security vulnerabilities in ethereal Source: CCN Type: RHSA-2005-427 ethereal security update Source: CCN Type: Ethereal, a network protocol analyzer Ethereal- The world's most popular network protocol analyzer Source: CCN Type: Ethereal Security Advisory #19 enpa-sa-00019 Multiple problems in Ethereal versions 0.8.14 to 0.10.10 Source: CONFIRM Type: UNKNOWN http://www.ethereal.com/appnotes/enpa-sa-00019.html Source: CCN Type: Ethereal- Download Ethereal Download page Source: CONFIRM Type: UNKNOWN http://www.ethereal.com/news/item_20050504_01.html Source: CCN Type: GLSA-200505-03 Ethereal: Numerous vulnerabilities Source: FEDORA Type: UNKNOWN FLSA-2006:152922 Source: REDHAT Type: UNKNOWN RHSA-2005:427 Source: BID Type: UNKNOWN 13504 Source: CCN Type: BID-13504 Ethereal Multiple Remote Protocol Dissector Vulnerabilities Source: XF Type: UNKNOWN ethereal-sip-bo(20447) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:9853 | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Denotes that component is vulnerable | ||||||||||||
Vulnerability Name: | CVE-2005-1461 (CCN-20454) | ||||||||||||
Assigned: | 2005-05-04 | ||||||||||||
Published: | 2005-05-04 | ||||||||||||
Updated: | 2005-05-04 | ||||||||||||
Summary: | Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Presentation dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code. | ||||||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-1461 Source: CCN Type: Conectiva Linux Security Announcement CLSA-2005:963 Fixes for miltiple security vulnerabilities in ethereal Source: CCN Type: RHSA-2005-427 ethereal security update Source: CCN Type: Ethereal, a network protocol analyzer Ethereal- The world's most popular network protocol analyzer Source: CCN Type: Ethereal Security Advisory #19 enpa-sa-00019 Multiple problems in Ethereal versions 0.8.14 to 0.10.10 Source: CCN Type: Ethereal- Download Ethereal Download page Source: CCN Type: GLSA-200505-03 Ethereal: Numerous vulnerabilities Source: CCN Type: BID-13504 Ethereal Multiple Remote Protocol Dissector Vulnerabilities Source: CCN Type: BID-13567 Ethereal DISTCC Dissection Stack Buffer Overflow Vulnerability Source: XF Type: UNKNOWN ethereal-distcc-dissector-bo(20454) | ||||||||||||
Vulnerable Configuration: | Configuration RedHat 1: Denotes that component is vulnerable | ||||||||||||
Vulnerability Name: | CVE-2005-1461 (CCN-20456) | ||||||||||||
Assigned: | 2005-05-04 | ||||||||||||
Published: | 2005-05-04 | ||||||||||||
Updated: | 2005-05-04 | ||||||||||||
Summary: | Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Presentation dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code. | ||||||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-1461 Source: CCN Type: Conectiva Linux Security Announcement CLSA-2005:963 Fixes for miltiple security vulnerabilities in ethereal Source: CCN Type: RHSA-2005-427 ethereal security update Source: CCN Type: Ethereal, a network protocol analyzer Ethereal- The world's most popular network protocol analyzer Source: CCN Type: Ethereal Security Advisory #19 enpa-sa-00019 Multiple problems in Ethereal versions 0.8.14 to 0.10.10 Source: CCN Type: Ethereal- Download Ethereal Download page Source: CCN Type: GLSA-200505-03 Ethereal: Numerous vulnerabilities Source: CCN Type: BID-13504 Ethereal Multiple Remote Protocol Dissector Vulnerabilities Source: XF Type: UNKNOWN ethereal-fcels-dissector-bo(20456) | ||||||||||||
Vulnerable Configuration: | Configuration RedHat 1: Denotes that component is vulnerable | ||||||||||||
Vulnerability Name: | CVE-2005-1461 (CCN-20493) | ||||||||||||
Assigned: | 2005-05-04 | ||||||||||||
Published: | 2005-05-04 | ||||||||||||
Updated: | 2005-05-04 | ||||||||||||
Summary: | Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Presentation dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code. | ||||||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Consequences: | Denial of Service | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-1461 Source: CCN Type: Conectiva Linux Security Announcement CLSA-2005:963 Fixes for miltiple security vulnerabilities in ethereal Source: CCN Type: RHSA-2005-427 ethereal security update Source: CCN Type: Ethereal, a network protocol analyzer Ethereal- The world's most popular network protocol analyzer Source: CCN Type: Ethereal Security Advisory #19 enpa-sa-00019 Multiple problems in Ethereal versions 0.8.14 to 0.10.10 Source: CCN Type: Ethereal- Download Ethereal Download page Source: CCN Type: GLSA-200505-03 Ethereal: Numerous vulnerabilities Source: CCN Type: BID-13504 Ethereal Multiple Remote Protocol Dissector Vulnerabilities Source: XF Type: UNKNOWN ethereal-isis-dissector-dos(20493) | ||||||||||||
Vulnerable Configuration: | Configuration RedHat 1: Denotes that component is vulnerable | ||||||||||||
Vulnerability Name: | CVE-2005-1461 (CCN-20494) | ||||||||||||
Assigned: | 2005-05-04 | ||||||||||||
Published: | 2005-05-04 | ||||||||||||
Updated: | 2005-05-04 | ||||||||||||
Summary: | Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Presentation dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code. | ||||||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Consequences: | Denial of Service | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-1461 Source: CCN Type: Conectiva Linux Security Announcement CLSA-2005:963 Fixes for miltiple security vulnerabilities in ethereal Source: CCN Type: RHSA-2005-427 ethereal security update Source: CCN Type: Ethereal, a network protocol analyzer Ethereal- The world's most popular network protocol analyzer Source: CCN Type: Ethereal Security Advisory #19 enpa-sa-00019 Multiple problems in Ethereal versions 0.8.14 to 0.10.10 Source: CCN Type: Ethereal- Download Ethereal Download page Source: CCN Type: GLSA-200505-03 Ethereal: Numerous vulnerabilities Source: CCN Type: BID-13504 Ethereal Multiple Remote Protocol Dissector Vulnerabilities Source: XF Type: UNKNOWN ethereal-multiple-dissectors-dos(20494) | ||||||||||||
Vulnerable Configuration: | Configuration RedHat 1: Denotes that component is vulnerable | ||||||||||||
Vulnerability Name: | CVE-2005-1461 (CCN-20518) | ||||||||||||
Assigned: | 2005-05-04 | ||||||||||||
Published: | 2005-05-04 | ||||||||||||
Updated: | 2005-05-04 | ||||||||||||
Summary: | Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Presentation dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code. | ||||||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Consequences: | Denial of Service | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-1461 Source: MITRE Type: CNA CVE-2005-1468 Source: CCN Type: Conectiva Linux Security Announcement CLSA-2005:963 Fixes for miltiple security vulnerabilities in ethereal Source: CCN Type: RHSA-2005-427 ethereal security update Source: CCN Type: Ethereal, a network protocol analyzer Ethereal- The world's most popular network protocol analyzer Source: CCN Type: Ethereal Security Advisory #19 enpa-sa-00019 Multiple problems in Ethereal versions 0.8.14 to 0.10.10 Source: CCN Type: Ethereal- Download Ethereal Download page Source: CCN Type: GLSA-200505-03 Ethereal: Numerous vulnerabilities Source: CCN Type: BID-13504 Ethereal Multiple Remote Protocol Dissector Vulnerabilities Source: XF Type: UNKNOWN ethereal-q931-dissector-dos(20518) | ||||||||||||
Vulnerable Configuration: | Configuration RedHat 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||
Vulnerability Name: | CVE-2005-1461 (CCN-20521) | ||||||||||||
Assigned: | 2005-05-04 | ||||||||||||
Published: | 2005-05-04 | ||||||||||||
Updated: | 2005-05-04 | ||||||||||||
Summary: | Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Presentation dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code. | ||||||||||||
CVSS v3 Severity: | 6.5 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Consequences: | Denial of Service | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-1461 Source: MITRE Type: CNA CVE-2005-1464 Source: CCN Type: Conectiva Linux Security Announcement CLSA-2005:963 Fixes for miltiple security vulnerabilities in ethe Source: CCN Type: Conectiva Linux Security Announcement CLSA-2005:1003 Fixes for multiple security vulnerabilities in ethereal Source: CCN Type: RHSA-2005-427 ethereal security update Source: CCN Type: Ethereal, a network protocol analyzer Ethereal- The world's most popular network protocol analyzer Source: CCN Type: Ethereal Security Advisory #19 enpa-sa-00019 Multiple problems in Ethereal versions 0.8.14 to 0.10.10 Source: CCN Type: Ethereal- Download Ethereal Download page Source: CCN Type: GLSA-200505-03 Ethereal: Numerous vulnerabilities Source: CCN Type: BID-13504 Ethereal Multiple Remote Protocol Dissector Vulnerabilities Source: XF Type: UNKNOWN ethereal-megaco-dissector-dos(20521) | ||||||||||||
Vulnerable Configuration: | Configuration RedHat 1: Denotes that component is vulnerable | ||||||||||||
Vulnerability Name: | CVE-2005-1461 (CCN-20549) | ||||||||||||
Assigned: | 2005-05-04 | ||||||||||||
Published: | 2005-05-04 | ||||||||||||
Updated: | 2005-05-04 | ||||||||||||
Summary: | Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Presentation dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code. | ||||||||||||
CVSS v3 Severity: | 6.5 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Consequences: | Denial of Service | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-1461 Source: MITRE Type: CNA CVE-2005-1470 Source: CCN Type: Conectiva Linux Announcement CLSA-2005:963 Fixes for miltiple security vulnerabilities in ethereal Source: CCN Type: RHSA-2005-427 ethereal security update Source: CCN Type: Ethereal, a network protocol analyzer Ethereal- The world's most popular network protocol analyzer Source: CCN Type: Ethereal Security Advisory #19 enpa-sa-00019 Multiple problems in Ethereal versions 0.8.14 to 0.10.10 Source: CCN Type: Ethereal- Download Ethereal Download page Source: CCN Type: GLSA-200505-03 Ethereal: Numerous vulnerabilities Source: CCN Type: BID-13504 Ethereal Multiple Remote Protocol Dissector Vulnerabilities Source: XF Type: UNKNOWN ethereal-isup-dissector-dos(20549) | ||||||||||||
Vulnerable Configuration: | Configuration RedHat 1: Denotes that component is vulnerable | ||||||||||||
Vulnerability Name: | CVE-2005-1461 (CCN-20551) | ||||||||||||
Assigned: | 2005-05-04 | ||||||||||||
Published: | 2005-05-04 | ||||||||||||
Updated: | 2005-05-04 | ||||||||||||
Summary: | Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Presentation dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code. | ||||||||||||
CVSS v3 Severity: | 6.5 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Consequences: | Denial of Service | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-1459 Source: MITRE Type: CNA CVE-2005-1461 Source: CCN Type: Conectiva Linux Announcement CLSA-2005:963 Fixes for miltiple security vulnerabilities in ethereal Source: CCN Type: RHSA-2005-427 ethereal security update Source: CCN Type: Ethereal, a network protocol analyzer Ethereal- The world's most popular network protocol analyzer Source: CCN Type: Ethereal Security Advisory #19 enpa-sa-00019 Multiple problems in Ethereal versions 0.8.14 to 0.10.10 Source: CCN Type: Ethereal- Download Ethereal Download page Source: CCN Type: GLSA-200505-03 Ethereal: Numerous vulnerabilities Source: CCN Type: BID-13504 Ethereal Multiple Remote Protocol Dissector Vulnerabilities Source: XF Type: UNKNOWN ethereal-tcap-dissector-dos(20551) | ||||||||||||
Vulnerable Configuration: | Configuration RedHat 1: Denotes that component is vulnerable | ||||||||||||
Vulnerability Name: | CVE-2005-1461 (CCN-20552) | ||||||||||||
Assigned: | 2005-05-04 | ||||||||||||
Published: | 2005-05-04 | ||||||||||||
Updated: | 2005-05-04 | ||||||||||||
Summary: | Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Presentation dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code. | ||||||||||||
CVSS v3 Severity: | 6.5 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Consequences: | Denial of Service | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-1461 Source: CCN Type: Conectiva Linux Security Announcement CLSA-2005:963 Fixes for miltiple security vulnerabilities in ethereal Source: CCN Type: RHSA-2005-427 ethereal security update Source: CCN Type: Ethereal, a network protocol analyzer Ethereal- The world's most popular network protocol analyzer Source: CCN Type: Ethereal Security Advisory #19 enpa-sa-00019 Multiple problems in Ethereal versions 0.8.14 to 0.10.10 Source: CCN Type: Ethereal- Download Ethereal Download page Source: CCN Type: GLSA-200505-03 Ethereal: Numerous vulnerabilities Source: CCN Type: BID-13504 Ethereal Multiple Remote Protocol Dissector Vulnerabilities Source: XF Type: UNKNOWN ethereal-presentation-dissector-dos(20552) | ||||||||||||
Vulnerable Configuration: | Configuration RedHat 1: Denotes that component is vulnerable | ||||||||||||
Oval Definitions | |||||||||||||
| |||||||||||||
BACK |