CVE-2003-0926Group Ethereal vulnerability

6 documents5 sources
Severity
5.0MEDIUMNVD
EPSS
2.5%
top 14.67%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 1
Latest updateApr 29

Description

Ethereal 0.9.15 and earlier, and Tethereal, allows remote attackers to cause a denial of service (crash) via certain malformed (1) ISAKMP or (2) MEGACO packets.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDethereal_group/ethereal16 versions+15

Patches

🔴Vulnerability Details

2
GHSA
GHSA-xg3m-w2p7-5h5c: Ethereal 02022-04-29
CVEList
CVE-2003-0926: Ethereal 02003-11-06

📋Vendor Advisories

1
Red Hat
security flaw2003-11-03

💬Community

2
Bugzilla
CVE-2003-0926 security flaw2018-08-16
Bugzilla
CAN-2003-0925/6/7 Ethereal 0.9.13 has three exploitable security issues2003-11-05
CVE-2003-0926 — Ethereal Group Ethereal vulnerability | cvebase