Ethereal Group Ethereal vulnerabilities
104 known vulnerabilities affecting ethereal_group/ethereal.
Total CVEs
104
CISA KEV
0
Public exploits
9
Exploited in wild
0
Severity breakdown
CRITICAL7HIGH25MEDIUM72
Vulnerabilities
Page 2 of 6
CVE-2003-0159P4HIGHCVSS 7.5v0.8.18v0.9.0+9 more2003-04-02
CVE-2003-0159 [HIGH] CVE-2003-0159: Heap-based buffer overflow in the NTLMSSP code for Ethereal 0.9.9 and earlier allows remote attacker
Heap-based buffer overflow in the NTLMSSP code for Ethereal 0.9.9 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code.
nvd
CVE-2006-1932P4CRITICALCVSS 10.0v0.10v0.10.0+15 more2006-04-25
CVE-2006-1932 [CRITICAL] CVE-2006-1932: Off-by-one error in the OID printing routine in Ethereal 0.10.x up to 0.10.14 has unknown impact and
Off-by-one error in the OID printing routine in Ethereal 0.10.x up to 0.10.14 has unknown impact and remote attack vectors.
nvd
CVE-2003-0357P4HIGHCVSS 7.5≤ 0.9.112003-06-09
CVE-2003-0357 [HIGH] CVE-2003-0357: Multiple integer overflow vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to c
Multiple integer overflow vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) Mount and (2) PPP dissectors.
nvd
CVE-2003-0925P4HIGHCVSS 7.5v0.9v0.9.1+14 more2003-12-01
CVE-2003-0925 [HIGH] CVE-2003-0925: Buffer overflow in Ethereal 0.9.15 and earlier allows remote attackers to cause a denial of service
Buffer overflow in Ethereal 0.9.15 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed GTP MSISDN string.
nvd
CVE-2005-0704P4HIGHCVSS 7.5v0.10.7v0.10.8+1 more2005-05-02
CVE-2005-0704 [HIGH] CVE-2005-0704: Buffer overflow in the Etheric dissector in Ethereal 0.10.7 through 0.10.9 allows remote attackers t
Buffer overflow in the Etheric dissector in Ethereal 0.10.7 through 0.10.9 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code.
nvd
CVE-2007-6118P4HIGHCVSS 7.8v0.9.14v0.9.15+2 more2007-11-23
CVE-2007-6118 [HIGH] CVE-2007-6118: The MEGACO dissector in Wireshark (formerly Ethereal) 0.9.14 to 0.99.6 allows remote attackers to ca
The MEGACO dissector in Wireshark (formerly Ethereal) 0.9.14 to 0.99.6 allows remote attackers to cause a denial of service (long loop and resource consumption) via unknown vectors.
nvd
CVE-2002-0402P4HIGHCVSS 7.5v0.9.1v0.9.2+2 more2002-06-18
CVE-2002-0402 [HIGH] CVE-2002-0402: Buffer overflow in X11 dissector in Ethereal 0.9.3 and earlier allows remote attackers to cause a de
Buffer overflow in X11 dissector in Ethereal 0.9.3 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code while Ethereal is parsing keysyms.
nvd
CVE-2003-0429P4HIGHCVSS 7.5≤ 0.9.122003-07-24
CVE-2003-0429 [HIGH] CVE-2003-0429: The OSI dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of servic
The OSI dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via invalid IPv4 or IPv6 prefix lengths, possibly triggering a buffer overflow.
nvd
CVE-2004-1145P4MEDIUMCVSS 5.0v0.9v0.9.1+23 more2004-12-15
CVE-2004-1145 [MEDIUM] CVE-2004-1145: Multiple vulnerabilities in Konqueror in KDE 3.3.1 and earlier (1) allow access to restricted Java c
Multiple vulnerabilities in Konqueror in KDE 3.3.1 and earlier (1) allow access to restricted Java classes via JavaScript and (2) do not properly restrict access to certain Java classes from the Java applet, which allows remote attackers to bypass sandbox restrictions and read or write arbitrary files.
nvd
CVE-2005-4585P4HIGHCVSS 7.8v0.9.1v0.9.2+28 more2005-12-29
CVE-2005-4585 [HIGH] CVE-2005-4585: Unspecified vulnerability in the GTP dissector for Ethereal 0.9.1 to 0.10.13 allows remote attackers
Unspecified vulnerability in the GTP dissector for Ethereal 0.9.1 to 0.10.13 allows remote attackers to cause a denial of service (infinite loop) via unknown attack vectors.
nvd
CVE-2006-1936P4MEDIUMCVSS 5.0v0.9.15v0.9.16+16 more2006-04-25
CVE-2006-1936 [MEDIUM] CVE-2006-1936: Buffer overflow in Ethereal 0.8.5 up to 0.10.14 allows remote attackers to execute arbitrary code vi
Buffer overflow in Ethereal 0.8.5 up to 0.10.14 allows remote attackers to execute arbitrary code via the telnet dissector.
nvd
CVE-2003-0431P4CRITICALCVSS 10.0≤ 0.9.122003-07-24
CVE-2003-0431 [CRITICAL] CVE-2003-0431: The tvb_get_nstringz0 function in Ethereal 0.9.12 and earlier does not properly handle a zero-length
The tvb_get_nstringz0 function in Ethereal 0.9.12 and earlier does not properly handle a zero-length buffer size, with unknown consequences.
nvd
CVE-2003-0432P4CRITICALCVSS 10.0≤ 0.9.122003-07-24
CVE-2003-0432 [CRITICAL] CVE-2003-0432: Ethereal 0.9.12 and earlier does not handle certain strings properly, with unknown consequences, in
Ethereal 0.9.12 and earlier does not handle certain strings properly, with unknown consequences, in the (1) BGP, (2) WTP, (3) DNS, (4) 802.11, (5) ISAKMP, (6) WSP, (7) CLNP, (8) ISIS, and (9) RMI dissectors.
nvd
CVE-2002-0834P4HIGHCVSS 7.5v0.8v0.8.18+6 more2002-09-24
CVE-2002-0834 [HIGH] CVE-2002-0834: Buffer overflow in the ISIS dissector for Ethereal 0.9.5 and earlier allows remote attackers to caus
Buffer overflow in the ISIS dissector for Ethereal 0.9.5 and earlier allows remote attackers to cause a denial of service or execute arbitrary code via malformed packets.
nvd
CVE-2006-1935P4MEDIUMCVSS 5.0v0.9.15v0.9.16+16 more2006-04-25
CVE-2006-1935 [MEDIUM] CVE-2006-1935: Buffer overflow in Ethereal 0.9.15 up to 0.10.14 allows remote attackers to cause a denial of servic
Buffer overflow in Ethereal 0.9.15 up to 0.10.14 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the COPS dissector.
nvd
CVE-2006-3629P4HIGHCVSS 7.8v0.9.4v0.9.5+29 more2006-07-21
CVE-2006-3629 [HIGH] CVE-2006-3629: Unspecified vulnerability in the MOUNT dissector in Wireshark (aka Ethereal) 0.9.4 to 0.99.0 allows
Unspecified vulnerability in the MOUNT dissector in Wireshark (aka Ethereal) 0.9.4 to 0.99.0 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors.
nvd
CVE-2002-1356P4HIGHCVSS 7.5≤ 0.9.72002-12-23
CVE-2002-1356 [HIGH] CVE-2002-1356: Ethereal 0.9.7 and earlier allows remote attackers to cause a denial of service (crash) and possibly
Ethereal 0.9.7 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via malformed packets to the (1) LMP, (2) PPP, or (3) TDS dissectors, possibly related to a missing field for EndVerifyAck messages.
nvd
CVE-2006-1934P4MEDIUMCVSS 5.0v0.10v0.10.0+14 more2006-04-25
CVE-2006-1934 [MEDIUM] CVE-2006-1934: Multiple buffer overflows in Ethereal 0.10.x up to 0.10.14 allow remote attackers to cause a denial
Multiple buffer overflows in Ethereal 0.10.x up to 0.10.14 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the (1) ALCAP dissector, (2) Network Instruments file code, or (3) NetXray/Windows Sniffer file code.
nvd
CVE-2002-0821P4HIGHCVSS 7.5≤ 0.9.42002-08-12
CVE-2002-0821 [HIGH] CVE-2002-0821: Buffer overflows in Ethereal 0.9.4 and earlier allow remote attackers to cause a denial of service o
Buffer overflows in Ethereal 0.9.4 and earlier allow remote attackers to cause a denial of service or execute arbitrary code via (1) the BGP dissector, or (2) the WCP dissector.
nvd
CVE-2002-0822P4HIGHCVSS 7.5≤ 0.9.42002-08-12
CVE-2002-0822 [HIGH] CVE-2002-0822: Ethereal 0.9.4 and earlier allows remote attackers to cause a denial of service and possibly excecut
Ethereal 0.9.4 and earlier allows remote attackers to cause a denial of service and possibly excecute arbitrary code via the (1) SOCKS, (2) RSVP, (3) AFS, or (4) LMP dissectors, which can be caused to core dump.
nvd