Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> SuSE Local Security Checks >> SUSE-SA:2006:065: ethereal


Vulnerability Assessment Details

SUSE-SA:2006:065: ethereal

Vulnerability Assessment Summary
Check for the version of the ethereal package

Detailed Explanation for this Vulnerability Assessment

The remote host is missing the patch for the advisory SUSE-SA:2006:065 (ethereal).


Various problems have been fixed in the network analyzer Ethereal (now called
Wireshark), most of them leading to crashes of the ethereal program.

CVE-2006-5740: An unspecified vulnerability in the LDAP dissector
could be used to crash Ethereal.

CVE-2006-4574: A single \0 byte heap overflow was fixed in the MIME multipart
dissector. Potential of exploitability is unknown, but considered low.

CVE-2006-4805: A denial of service problem in the XOT dissector can cause
it to take up huge amount of memory and crash ethereal.

CVE-2006-5469: The WBXML dissector could be used to crash ethereal.

CVE-2006-5468: A NULL pointer dereference in the HTTP dissector could
crash ethereal.


Solution : http://www.suse.de/security/http://www.novell.com/linux/security/advisories/2006_65_ethereal.html
Network Security Threat Level: Medium

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2007 Tenable Network Security

Cables, Connectors

ALTAIR Software Library Update 18 page Newsletter
$12.99
ALTAIR Software Library Update 18 page Newsletter  pictureAltair 4K Basic Cassette MITS SW-4KM (NOS), Ver. 4.0, Dec 1, 1977 KCACR Standard
$114.0
Altair 4K Basic Cassette MITS SW-4KM (NOS), Ver. 4.0, Dec 1, 1977 KCACR Standard pictureThe Altair 8800 Microcomputer Manuals
$19.95
The Altair 8800 Microcomputer Manuals  picture1977 Best of Creative Computing #2 Altair 8800 Computer Faire IBM 5100 DEC PDP-8
$39.99
1977 Best of Creative Computing #2 Altair 8800 Computer Faire IBM 5100 DEC PDP-8 picture


Discussions

No Discussions have been posted on this vulnerability.