CVE-2005-1461
Summary
| CVE | CVE-2005-1461 |
|---|---|
| State | PUBLISHED |
| Assigner | redhat |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2005-05-05 04:00:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Presentation dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code. |
Risk And Classification
Primary CVSS: v2.0 7.5 from [email protected]
AV:N/AC:L/Au:N/C:P/I:P/A:P
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:N/AC:L/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ethereal Group | Ethereal | 0.10 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.10.0 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.10.1 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.10.10 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.10.2 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.10.3 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.10.4 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.10.5 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.10.6 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.10.7 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.10.8 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.10.9 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.8 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.8.13 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.8.14 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.8.15 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.8.18 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.8.19 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.1 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.10 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.11 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.12 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.13 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.14 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.15 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.16 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.2 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.3 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.4 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.5 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.6 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.7 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.8 | All | All | All |
| Application | Ethereal Group | Ethereal | 0.9.9 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Home - Conectiva | af854a3a-2127-422b-91ae-364da2661108 | distro.conectiva.com.br | |
| rhn.redhat.com | Red Hat Support | af854a3a-2127-422b-91ae-364da2661108 | www.redhat.com | |
| Ethereal Multiple Remote Protocol Dissector Vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| Ethereal: enpa-sa-00019 | af854a3a-2127-422b-91ae-364da2661108 | www.ethereal.com | URL Repurposed |
| [FLSA-2006:152922] Updated ethereal packages fix security issues | af854a3a-2127-422b-91ae-364da2661108 | www.redhat.com | |
| Ethereal: News Article | af854a3a-2127-422b-91ae-364da2661108 | www.ethereal.com | URL Repurposed |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.