PT-2005-2464 · Ethereal+1 · Ethereal+1

Published

2005-05-05

·

Updated

2024-02-14

·

CVE-2005-1468

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: Ethereal versions prior to 0.10.11
Description: The issue affects multiple dissectors in Ethereal, including WSP, Q.931, H.245, KINK, MGCP, RPC, SMBMailslot, and SMB NETLOGON. It allows remote attackers to cause a denial of service, leading to a crash via unknown vectors that result in a null dereference.
Recommendations: For versions prior to 0.10.11, update to version 0.10.11 or later to resolve the issue. As a temporary workaround, consider restricting access to the affected dissectors until a patch is applied.

Exploit

Fix

Related Identifiers

CVE-2005-1468
RHSA-2005:427
RHSA-2005_427

Affected Products

Ethereal
Red Hat