CVE-2006-4330
published 2006-08-24CVE-2006-4330: Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal) 0.99.2 allows remote attackers to cause a denial of service (crash) via…
PriorityP415medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
3.55%
88.1th percentile
Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal) 0.99.2 allows remote attackers to cause a denial of service (crash) via unspecified vectors.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | wireshark | < wireshark 0.99.2-5 (bookworm) | wireshark 0.99.2-5 (bookworm) |
| wireshark | wireshark | — | — |
| wireshark | wireshark | >= 0 < 0.99.2-5 | 0.99.2-5 |
| wireshark | wireshark | >= 0 < 0.99.2-5 | 0.99.2-5 |
| wireshark | wireshark | >= 0 < 0.99.2-5 | 0.99.2-5 |
| wireshark | wireshark | >= 0 < 0.99.2-5 | 0.99.2-5 |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv4.3MEDIUM
vendor_debian4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-4gjf-g4v6-75fp: Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal) 0
ghsa_unreviewed·2022-05-01
CVE-2006-4330 [MEDIUM] GHSA-4gjf-g4v6-75fp: Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal) 0
Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal) 0.99.2 allows remote attackers to cause a denial of service (crash) via unspecified vectors.
OSV
CVE-2006-4330: Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal) 0
osv·2006-08-24·CVSS 4.3
CVE-2006-4330 [MEDIUM] CVE-2006-4330: Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal) 0
Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal) 0.99.2 allows remote attackers to cause a denial of service (crash) via unspecified vectors.
Red Hat
security flaw
vendor_redhat·2006-08-23·CVSS 4.3
CVE-2006-4330 [MEDIUM] security flaw
security flaw
Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal) 0.99.2 allows remote attackers to cause a denial of service (crash) via unspecified vectors.
Debian
CVE-2006-4330: wireshark - Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal)...
vendor_debian·2006·CVSS 4.3
CVE-2006-4330 [MEDIUM] CVE-2006-4330: wireshark - Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal)...
Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal) 0.99.2 allows remote attackers to cause a denial of service (crash) via unspecified vectors.
Scope: local
bookworm: resolved (fixed in 0.99.2-5)
bullseye: resolved (fixed in 0.99.2-5)
forky: resolved (fixed in 0.99.2-5)
sid: resolved (fixed in 0.99.2-5)
trixie: resolved (fixed in 0.99.2-5)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2006-4330 security flaw
bugzilla·2018-08-16·CVSS 4.3
CVE-2006-4330 [MEDIUM] CVE-2006-4330 security flaw
CVE-2006-4330 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
Unspecified vulnerability in the SCSI dissector in Wireshark (formerly Ethereal) 0.99.2 allows remote attackers to cause a denial of service (crash) via unspecified vectors.
Bugzilla
CVE-2006-4330 Wireshark security issues (CVE-2006-4331 CVE-2006-4333)
bugzilla·2006-08-25·CVSS 4.3
CVE-2006-4330 [MEDIUM] CVE-2006-4330 Wireshark security issues (CVE-2006-4331 CVE-2006-4333)
CVE-2006-4330 Wireshark security issues (CVE-2006-4331 CVE-2006-4333)
See
http://www.wireshark.org/security/wnpa-sec-2006-02.html
Affects RHEL4, RHEL3, RHEL2.1
Given these have no arbitrary code impact, rated low severity. Updates for
these issues will be deferred until a future Wireshark update.
Discussion:
CVE-2006-4332 removed from summary as this only affected Windows builds
according to the Wireshark security advisory.
---
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rhn.redhat.com/errata
Bugzilla
CVE-2006-4330 Wireshark security issues (CVE-2006-4333 CVE-2006-4332 CVE-2006-4331)
bugzilla·2006-08-25·CVSS 4.3
CVE-2006-4330 [MEDIUM] CVE-2006-4330 Wireshark security issues (CVE-2006-4333 CVE-2006-4332 CVE-2006-4331)
CVE-2006-4330 Wireshark security issues (CVE-2006-4333 CVE-2006-4332 CVE-2006-4331)
See
http://www.wireshark.org/security/wnpa-sec-2006-02.html
Requires rebase to 0.99.3 prior to test3.
Discussion:
Package built in rawhide
http://secunia.com/advisories/21597http://secunia.com/advisories/21619http://secunia.com/advisories/21649http://secunia.com/advisories/21682http://secunia.com/advisories/21885http://secunia.com/advisories/22378http://security.gentoo.org/glsa/glsa-200608-26.xmlhttp://securitytracker.com/id?1016736http://support.avaya.com/elmodocs2/security/ASA-2006-227.htmhttp://www.kb.cert.org/vuls/id/808832http://www.mandriva.com/security/advisories?name=MDKSA-2006:152http://www.redhat.com/support/errata/RHSA-2006-0658.htmlhttp://www.securityfocus.com/archive/1/444323/100/0/threadedhttp://www.securityfocus.com/bid/19690http://www.vupen.com/english/advisories/2006/3370http://www.wireshark.org/security/wnpa-sec-2006-02.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/28550https://exchange.xforce.ibmcloud.com/vulnerabilities/28553https://issues.rpath.com/browse/RPL-597https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14684https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9869http://secunia.com/advisories/21597http://secunia.com/advisories/21619http://secunia.com/advisories/21649http://secunia.com/advisories/21682http://secunia.com/advisories/21885http://secunia.com/advisories/22378http://security.gentoo.org/glsa/glsa-200608-26.xmlhttp://securitytracker.com/id?1016736http://support.avaya.com/elmodocs2/security/ASA-2006-227.htmhttp://www.kb.cert.org/vuls/id/808832http://www.mandriva.com/security/advisories?name=MDKSA-2006:152http://www.redhat.com/support/errata/RHSA-2006-0658.htmlhttp://www.securityfocus.com/archive/1/444323/100/0/threadedhttp://www.securityfocus.com/bid/19690http://www.vupen.com/english/advisories/2006/3370http://www.wireshark.org/security/wnpa-sec-2006-02.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/28550https://exchange.xforce.ibmcloud.com/vulnerabilities/28553https://issues.rpath.com/browse/RPL-597https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14684https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9869
2006-08-24
Published