exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

Ethereal Security Advisory 15

Ethereal Security Advisory 15
Posted Jul 6, 2004
Authored by Ethereal | Site ethereal.com

Ethereal Security Advisory Enpa-sa-00015 - It may be possible to make Ethereal crash or run arbitrary code by injecting a purposefully malformed packet onto the wire or by convincing someone to read a malformed packet trace file due to three flaws. Versions affected: 0.8.15 up to and including 0.10.4.

tags | advisory, arbitrary
advisories | CVE-2004-0633, CVE-2004-0634, CVE-2004-0635
SHA-256 | d5a368ec67751e9d40febe084344d7bb7299f0161e34903b28db8f87e296e6a0

Ethereal Security Advisory 15

Change Mirror Download
*Name:* Multiple problems in Ethereal 0.10.4

*Docid:* enpa-sa-00015

*Date:* July 6, 2004

*Versions affected:* 0.8.15 up to and including 0.10.4

*Severity:* *High*


Details

*Description:*

Issues have been discovered in the following protocol dissectors:

* The iSNS dissector could make Ethereal abort in some cases.
(0.10.3 - 0.10.4) CAN-2004-0633
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0633>
* SMB SID snooping could crash if there was no policy name for a
handle. (0.9.15 - 0.10.4) CAN-2004-0634
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0634>
* The SNMP dissector could crash due to a malformed or missing
community string. (0.8.15 - 0.10.4) CAN-2004-0635
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0635>

*Impact:*

It may be possible to make Ethereal crash or run arbitrary code by
injecting a purposefully malformed packet onto the wire or by convincing
someone to read a malformed packet trace file.

*Resolution:*

Upgrade to 0.10.5.

If you are running a version prior to 0.10.5 and you cannot upgrade, you
can disable all of the protocol dissectors listed above by selecting
/Analyze->Enabled Protocols.../ and deselecting them from the list. For
SMB, you can alternatively disable SID snooping in the SMB protocol
preferences. However, it is strongly recommended that you upgrade to
0.10.5.

Please send support questions about Ethereal to the
ethereal-users[AT]ethereal.com <mailto:ethereal-users[AT]ethereal.com>
mailing list.
For corrections/additions/suggestions for this web page (and *not*
Ethereal support questions), please send email to
ethereal-web[AT]ethereal.com <mailto:ethereal-web[AT]ethereal.com> .
Last modified: Thu, July 08 2004.
Login or Register to add favorites

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close