PT-2003-1619 · Ethereal · Ethereal

Ian A Finlay

·

Published

2003-06-18

·

Updated

2024-02-14

·

CVE-2003-0428

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: Ethereal versions 0.9.12 and earlier
Description: The issue is related to a problem in the DCERPC (DCE/RPC) dissector, allowing remote attackers to cause a denial of service by consuming memory via a certain NDR string.
Recommendations: For Ethereal versions 0.9.12 and earlier, consider updating to a version that is not affected by this issue, as no specific fix is provided for these versions.

Fix

Related Identifiers

CVE-2003-0428
DSA-324

Affected Products

Ethereal