Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> SuSE Local Security Checks >> SUSE-SA:2006:065: ethereal


Vulnerability Assessment Details

SUSE-SA:2006:065: ethereal

Vulnerability Assessment Summary
Check for the version of the ethereal package

Detailed Explanation for this Vulnerability Assessment

The remote host is missing the patch for the advisory SUSE-SA:2006:065 (ethereal).


Various problems have been fixed in the network analyzer Ethereal (now called
Wireshark), most of them leading to crashes of the ethereal program.

CVE-2006-5740: An unspecified vulnerability in the LDAP dissector
could be used to crash Ethereal.

CVE-2006-4574: A single \0 byte heap overflow was fixed in the MIME multipart
dissector. Potential of exploitability is unknown, but considered low.

CVE-2006-4805: A denial of service problem in the XOT dissector can cause
it to take up huge amount of memory and crash ethereal.

CVE-2006-5469: The WBXML dissector could be used to crash ethereal.

CVE-2006-5468: A NULL pointer dereference in the HTTP dissector could
crash ethereal.


Solution : http://www.suse.de/security/http://www.novell.com/linux/security/advisories/2006_65_ethereal.html
Network Security Threat Level: Medium

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2007 Tenable Network Security

Cables, Connectors

Nova - Off-Camera Wireless Flash - For iPhone
$59.0
Nova - Off-Camera Wireless Flash - For iPhone picture1pc 4G U Disk Data Storage USB Flash Drive Storage Memory Stick Pen Black+Red
$0.01
1pc 4G U Disk Data Storage USB Flash Drive Storage Memory Stick Pen Black+Red pictureSabrent 75-in-1 Multi Flash Media Card Reader/writer
$2.99
Sabrent 75-in-1 Multi Flash Media Card Reader/writer pictureSanDisk Ultra Fit 128GB USB 3.0 Flash Drive (SDCZ43-128G-GAM46),Tested/Works
$9.99
SanDisk Ultra Fit 128GB USB 3.0 Flash Drive (SDCZ43-128G-GAM46),Tested/Works picture


Discussions

No Discussions have been posted on this vulnerability.