Executive Summary

Informations
NameCVE-2005-3243First vendor Publication2005-10-27
VendorCveLast vendor Modification2010-08-21

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:N/C:P/I:P/A:P)
Cvss Base Score7.5Attack RangeNetwork
Cvss Impact Score6.4Attack ComplexityLow
Cvss Expoit Score10AuthentificationNone Required
Calculate full CVSS 2.0 Vectors scores

Security Protection

ImpactsProvides user account access : Allows partial confidentiality, integrity, and availability violation; Allows unauthorized disclosure of information; Allows disruption of service.

Detail

Multiple buffer overflows in Ethereal 0.10.12 and earlier might allow remote attackers to execute arbitrary code via unknown vectors in the (1) SLIMP3 and (2) AgentX dissector.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3243

OVAL Definitions

Definition Id: oval:org.mitre.oval:def:9836
 
Oval ID: oval:org.mitre.oval:def:9836
Title: Multiple buffer overflows in Ethereal 0.10.12 and earlier might allow remote attackers to execute arbitrary code via unknown vectors in the (1) SLIMP3 and (2) AgentX dissector.
Description: Multiple buffer overflows in Ethereal 0.10.12 and earlier might allow remote attackers to execute arbitrary code via unknown vectors in the (1) SLIMP3 and (2) AgentX dissector.
Family: unix Class: vulnerability
Reference(s): CVE-2005-3243
Version: 5
Platform(s): Red Hat Enterprise Linux 3
CentOS Linux 3
Red Hat Enterprise Linux 4
CentOS Linux 4
Oracle Linux 4
Product(s):
Definition Synopsis:

CPE : Common Platform Enumeration

TypeDescriptionCount
Application29

Open Source Vulnerability Database (OSVDB)

idDescription
20135Ethereal AgentX Dissector Remote Overflow
20126Ethereal SLIMP3 Dissector Remote Overflow

Internal Sources (Detail)

SourceUrl
BIDhttp://www.securityfocus.com/bid/15148
CONFIRMhttp://www.ethereal.com/appnotes/enpa-sa-00021.html
DEBIANhttp://www.debian.org/security/2006/dsa-1171
FEDORAhttp://www.redhat.com/archives/fedora-legacy-announce/2006-January/msg00003.html
GENTOOhttp://www.gentoo.org/security/en/glsa/glsa-200510-25.xml
MISChttp://www.frsirt.com/exploits/20051020.ethereal_slimp3_bof.py.php
OSVDBhttp://www.osvdb.org/20126
http://www.osvdb.org/20135
REDHAThttp://www.redhat.com/support/errata/RHSA-2005-809.html
SECTRACKhttp://securitytracker.com/id?1015082
SECUNIAhttp://secunia.com/advisories/17254
http://secunia.com/advisories/17286
http://secunia.com/advisories/17327
http://secunia.com/advisories/17377
http://secunia.com/advisories/17392
http://secunia.com/advisories/17480
http://secunia.com/advisories/21813
SUSEhttp://www.novell.com/linux/security/advisories/2005_25_sr.html

Alert History

If you want to see full details history, please login or register.
0
DateInformations
2013-05-11 11:32:47
  • Multiple Updates