Description
Ethereal 0.9.0 through 0.10.7 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed SMB packet.
Affected products
- altlinux / alt_linux2.3 – 2.3
- altlinux / alt_linux2.3 – 2.3
- conectiva / linux9.0 – 9.0
- conectiva / linux10.0 – 10.0
- Debian / debian_linux3.0 – 3.0
- Debian / debian_linux3.0 – 3.0
- Debian / debian_linux3.0 – 3.0
- Debian / debian_linux3.0 – 3.0
- Debian / debian_linux3.0 – 3.0
- Debian / debian_linux3.0 – 3.0
- Debian / debian_linux3.0 – 3.0
- Debian / debian_linux3.0 – 3.0
- Debian / debian_linux3.0 – 3.0
- Debian / debian_linux3.0 – 3.0
- Debian / debian_linux3.0 – 3.0
- ethereal_group / ethereal0.9.15 – 0.9.15
- ethereal_group / ethereal0.9.16 – 0.9.16
- ethereal_group / ethereal0.10 – 0.10
- ethereal_group / ethereal0.10.1 – 0.10.1
- ethereal_group / ethereal0.10.2 – 0.10.2
- ethereal_group / ethereal0.10.3 – 0.10.3
- ethereal_group / ethereal0.10.4 – 0.10.4
- ethereal_group / ethereal0.10.5 – 0.10.5
- ethereal_group / ethereal0.10.6 – 0.10.6
- ethereal_group / ethereal0.10.7 – 0.10.7
- ethereal_group / ethereal0.9.14 – 0.9.14
- ethereal_group / ethereal0.9.1 – 0.9.1
- ethereal_group / ethereal0.9.2 – 0.9.2
- ethereal_group / ethereal0.9.3 – 0.9.3
- ethereal_group / ethereal0.9.4 – 0.9.4
- ethereal_group / ethereal0.9.5 – 0.9.5
- ethereal_group / ethereal0.9.6 – 0.9.6
- ethereal_group / ethereal0.9.7 – 0.9.7
- ethereal_group / ethereal0.9.8 – 0.9.8
- ethereal_group / ethereal0.9.9 – 0.9.9
- ethereal_group / ethereal0.9.10 – 0.9.10
- ethereal_group / ethereal0.9.11 – 0.9.11
- ethereal_group / ethereal0.9.12 – 0.9.12
- ethereal_group / ethereal0.9.13 – 0.9.13
- ethereal_group / ethereal0.9 – 0.9
- RedHat / enterprise_linux3.0 – 3.0
- RedHat / enterprise_linux2.1 – 2.1
- RedHat / enterprise_linux2.1 – 2.1
- RedHat / enterprise_linux2.1 – 2.1
- RedHat / enterprise_linux2.1 – 2.1
- RedHat / enterprise_linux2.1 – 2.1
- RedHat / enterprise_linux2.1 – 2.1
- RedHat / enterprise_linux3.0 – 3.0
- RedHat / enterprise_linux3.0 – 3.0
- RedHat / enterprise_linux_desktop3.0 – 3.0
- RedHat / linux_advanced_workstation2.1 – 2.1
- RedHat / linux_advanced_workstation2.1 – 2.1
- sgi / propack3.0 – 3.0
- SUSE / suse_linux8.0 – 8.0
- SUSE / suse_linux8.0 – 8.0
- SUSE / suse_linux8.1 – 8.1
- SUSE / suse_linux8.2 – 8.2
- SUSE / suse_linux9.0 – 9.0
- SUSE / suse_linux9.0 – 9.0
- SUSE / suse_linux9.1 – 9.1
- SUSE / suse_linux9.2 – 9.2
References
- MISChttp://www.ethereal.com/appnotes/enpa-sa-00016.html
- MISChttp://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000916
- MISChttp://www.gentoo.org/security/en/glsa/glsa-200412-15.xml
- VENDOR_ADVISORYhttp://secunia.com/advisories/13468/
- VENDOR_ADVISORYhttp://www.mandriva.com/security/advisories?name=MDKSA-2004:152
- MISChttp://www.redhat.com/support/errata/RHSA-2005-037.html
- VENDOR_ADVISORYhttp://www.debian.org/security/2004/dsa-613
- MISChttp://www.securityfocus.com/bid/11943
- MISChttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11278
- MISChttp://www.redhat.com/archives/fedora-legacy-announce/2006-January/msg00003.html
- MISChttp://www.ciac.org/ciac/bulletins/p-061.shtml
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/18488