CVE-2006-4805
published 2006-10-27CVE-2006-4805: epan/dissectors/packet-xot.c in the XOT dissector (dissect_xot_pdu) in Wireshark (formerly Ethereal) 0.9.8 through 0.99.3 allows remote attackers to cause a…
PriorityP420medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
4.17%
89.8th percentile
epan/dissectors/packet-xot.c in the XOT dissector (dissect_xot_pdu) in Wireshark (formerly Ethereal) 0.9.8 through 0.99.3 allows remote attackers to cause a denial of service (memory consumption and crash) via an encoded XOT packet that produces a zero length value when it is decoded.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | wireshark | < wireshark 0.99.4-1 (bookworm) | wireshark 0.99.4-1 (bookworm) |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | >= 0 < 0.99.4-1 | 0.99.4-1 |
| wireshark | wireshark | >= 0 < 0.99.4-1 | 0.99.4-1 |
| wireshark | wireshark | >= 0 < 0.99.4-1 | 0.99.4-1 |
| wireshark | wireshark | >= 0 < 0.99.4-1 | 0.99.4-1 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
security flaw
vendor_redhat·2006-10-30·CVSS 5.0
CVE-2006-4805 [MEDIUM] security flaw
security flaw
epan/dissectors/packet-xot.c in the XOT dissector (dissect_xot_pdu) in Wireshark (formerly Ethereal) 0.9.8 through 0.99.3 allows remote attackers to cause a denial of service (memory consumption and crash) via an encoded XOT packet that produces a zero length value when it is decoded.
Debian
CVE-2006-4805: wireshark - epan/dissectors/packet-xot.c in the XOT dissector (dissect_xot_pdu) in Wireshark...
vendor_debian·2006·CVSS 5.0
CVE-2006-4805 [MEDIUM] CVE-2006-4805: wireshark - epan/dissectors/packet-xot.c in the XOT dissector (dissect_xot_pdu) in Wireshark...
epan/dissectors/packet-xot.c in the XOT dissector (dissect_xot_pdu) in Wireshark (formerly Ethereal) 0.9.8 through 0.99.3 allows remote attackers to cause a denial of service (memory consumption and crash) via an encoded XOT packet that produces a zero length value when it is decoded.
Scope: local
bookworm: resolved (fixed in 0.99.4-1)
bullseye: resolved (fixed in 0.99.4-1)
forky: resolved (fixed in 0.99.4-1)
sid: resolved (fixed in 0.99.4-1)
trixie: resolved (fixed in 0.99.4-1)
GHSA
GHSA-369f-gjmm-gjfc: epan/dissectors/packet-xot
ghsa_unreviewed·2022-05-03
CVE-2006-4805 [MEDIUM] GHSA-369f-gjmm-gjfc: epan/dissectors/packet-xot
epan/dissectors/packet-xot.c in the XOT dissector (dissect_xot_pdu) in Wireshark (formerly Ethereal) 0.9.8 through 0.99.3 allows remote attackers to cause a denial of service (memory consumption and crash) via an encoded XOT packet that produces a zero length value when it is decoded.
OSV
CVE-2006-4805: epan/dissectors/packet-xot
osv·2006-10-27·CVSS 5.0
CVE-2006-4805 [MEDIUM] CVE-2006-4805: epan/dissectors/packet-xot
epan/dissectors/packet-xot.c in the XOT dissector (dissect_xot_pdu) in Wireshark (formerly Ethereal) 0.9.8 through 0.99.3 allows remote attackers to cause a denial of service (memory consumption and crash) via an encoded XOT packet that produces a zero length value when it is decoded.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2006-4805 security flaw
bugzilla·2018-08-16·CVSS 5.0
CVE-2006-4805 [MEDIUM] CVE-2006-4805 security flaw
CVE-2006-4805 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
epan/dissectors/packet-xot.c in the XOT dissector (dissect_xot_pdu) in Wireshark (formerly Ethereal) 0.9.8 through 0.99.3 allows remote attackers to cause a denial of service (memory consumption and crash) via an encoded XOT packet that produces a zero length value when it is decoded.
Bugzilla
CVE-2006-4574 Multiple Wireshark issues (CVE-2006-4805, CVE-2006-5468, CVE-2006-5469, CVE-2006-5740)
bugzilla·2006-10-24·CVSS 7.5
CVE-2006-4574 [HIGH] CVE-2006-4574 Multiple Wireshark issues (CVE-2006-4805, CVE-2006-5468, CVE-2006-5469, CVE-2006-5740)
CVE-2006-4574 Multiple Wireshark issues (CVE-2006-4805, CVE-2006-5468, CVE-2006-5469, CVE-2006-5740)
Wireshark 0.99.4 will be fixing several security issues:
CVE-2006-5468
> * NULL point dereference
> The HTTP dissector could dereference a null pointer.
> Fixed in r19022, r19153
> Bug IDs: 1050, 1079
> Versions affected: 0.99.3.
CVE-2006-5469
> The WBXML dissector could crash.
> Fixed in r19560
> Bug IDs: 1134
> Versions affected: 0.10.11 to 0.99.3.
CVE-2006-5470
> * OOB memory read
> The LDAP dissector (and possibly others) could crash.
> Fixed in r19154
> Bug IDs: 1079
> Versions affected: 0.99.3.
CVE-2006-4805
> * Basic DoS (it crashes, that's it)
> The XOT dissector could attempt to allocate a large amount of
> memory and crash.
> Fixed in r19365
> Bug IDs: 1133
> Versions affe
Bugzilla
CVE-2006-1932 Multiple ethereal issues (CVE-2006-1933, CVE-2006-1934, CVE-2006-1935, CVE-2006-1936, CVE-2006-1937, CVE-2006-1938, CVE-2006-1939, CVE-2006-1940, VE-2006-4805, CVE-2006-5468, CVE-2006-54
bugzilla·2006-05-12·CVSS 10.0
CVE-2006-1932 [CRITICAL] CVE-2006-1932 Multiple ethereal issues (CVE-2006-1933, CVE-2006-1934, CVE-2006-1935, CVE-2006-1936, CVE-2006-1937, CVE-2006-1938, CVE-2006-1939, CVE-2006-1940, VE-2006-4805, CVE-2006-5468, CVE-2006-54
CVE-2006-1932 Multiple ethereal issues (CVE-2006-1933, CVE-2006-1934, CVE-2006-1935, CVE-2006-1936, CVE-2006-1937, CVE-2006-1938, CVE-2006-1939, CVE-2006-1940, VE-2006-4805, CVE-2006-5468, CVE-2006-5469, CVE-2006-5740, CVE-2006-4574)
+++ This bug was initially created as a clone of Bug #189906 +++
Ethereal 0.99.0 has been released which fixes multiple issues. The release
information can be found here:
http://www.ethereal.com/appnotes/enpa-sa-00023.html
These issues should also affect RHEL2 and RHEL3
-- Additional comment from [email protected] on 2006-05-03 12:28 EST --
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the
ftp://patches.sgi.com/support/free/security/advisories/20061101-01-Phttp://secunia.com/advisories/22590http://secunia.com/advisories/22659http://secunia.com/advisories/22672http://secunia.com/advisories/22692http://secunia.com/advisories/22797http://secunia.com/advisories/22841http://secunia.com/advisories/22929http://secunia.com/advisories/23096http://securitytracker.com/id?1017129http://support.avaya.com/elmodocs2/security/ASA-2006-255.htmhttp://www.kb.cert.org/vuls/id/723736http://www.mandriva.com/security/advisories?name=MDKSA-2006:195http://www.novell.com/linux/security/advisories/2006_65_ethereal.htmlhttp://www.redhat.com/support/errata/RHSA-2006-0726.htmlhttp://www.securityfocus.com/archive/1/450307/100/0/threadedhttp://www.securityfocus.com/bid/20762http://www.us.debian.org/security/2006/dsa-1201http://www.vupen.com/english/advisories/2006/4220http://www.wireshark.org/security/wnpa-sec-2006-03.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/29843https://issues.rpath.com/browse/RPL-746https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10199ftp://patches.sgi.com/support/free/security/advisories/20061101-01-Phttp://secunia.com/advisories/22590http://secunia.com/advisories/22659http://secunia.com/advisories/22672http://secunia.com/advisories/22692http://secunia.com/advisories/22797http://secunia.com/advisories/22841http://secunia.com/advisories/22929http://secunia.com/advisories/23096http://securitytracker.com/id?1017129http://support.avaya.com/elmodocs2/security/ASA-2006-255.htmhttp://www.kb.cert.org/vuls/id/723736http://www.mandriva.com/security/advisories?name=MDKSA-2006:195http://www.novell.com/linux/security/advisories/2006_65_ethereal.htmlhttp://www.redhat.com/support/errata/RHSA-2006-0726.htmlhttp://www.securityfocus.com/archive/1/450307/100/0/threadedhttp://www.securityfocus.com/bid/20762http://www.us.debian.org/security/2006/dsa-1201http://www.vupen.com/english/advisories/2006/4220http://www.wireshark.org/security/wnpa-sec-2006-03.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/29843https://issues.rpath.com/browse/RPL-746https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10199
2006-10-27
Published