CVE-2005-3184

6 documents5 sources
Severity
10.0CRITICAL
EPSS
3.4%
top 12.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 20
Latest updateMay 1

Description

Buffer overflow vulnerability in the unicode_to_bytes in the Service Location Protocol (srvloc) dissector (packet-srvloc.c) in Ethereal allows remote attackers to execute arbitrary code via a srvloc packet with a modified length value.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages1 packages

ā–¶NVDethereal_group/ethereal0.10.12

Patches

šŸ”“Vulnerability Details

2
GHSA
GHSA-6w2p-2q8v-8qwr: Buffer overflow vulnerability in the unicode_to_bytes in the Service Location Protocol (srvloc) dissector (packet-srvloc↗2022-05-01
ā–¶
CVEList
CVE-2005-3184: Buffer overflow vulnerability in the unicode_to_bytes in the Service Location Protocol (srvloc) dissector (packet-srvloc↗2005-10-20
ā–¶

šŸ“‹Vendor Advisories

1
Red Hat
security flaw↗2005-10-19
ā–¶

šŸ’¬Community

2
Bugzilla
CVE-2005-3184 security flaw↗2018-08-16
ā–¶
Bugzilla
CVE-2005-3241 Multiple ethereal issues (CVE-2005-3242 CVE-2005-3243 CVE-2005-3244 CVE-2005-3245 CVE-2005-3246 CVE-2005-3247 CVE-2005-3248 CVE-2005-3249 CVE-2005-3184)↗2005-10-17
ā–¶
CVE-2005-3184 (CRITICAL CVSS 10) | Buffer overflow vulnerability in th | cvebase.io