Ethereal Malformed SNMP Denial of Service Vulnerability
BID:4168
Info
Ethereal Malformed SNMP Denial of Service Vulnerability
| Bugtraq ID: | 4168 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 22 2002 12:00AM |
| Updated: | Feb 22 2002 12:00AM |
| Credit: | Published by Information Security <[email protected]>. |
| Vulnerable: |
Gerald Combs Ethereal 0.8.13 Ethereal Group Ethereal 0.9.1 Ethereal Group Ethereal 0.8.18 |
| Not Vulnerable: |
Ethereal Group Ethereal 0.9.3 Ethereal Group Ethereal 0.9.2 |
Discussion
Ethereal Malformed SNMP Denial of Service Vulnerability
Ethereal 0.9.1 is a sniffer and traffic analyzer. It is reported to crash when it receives (i.e., intercepts) a specific malformed SNMP packet. This is at the least a denial of service, but may also be an exploitable buffer overflow issue.
Ethereal 0.9.1 is a sniffer and traffic analyzer. It is reported to crash when it receives (i.e., intercepts) a specific malformed SNMP packet. This is at the least a denial of service, but may also be an exploitable buffer overflow issue.
Exploit / POC
Ethereal Malformed SNMP Denial of Service Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Ethereal Malformed SNMP Denial of Service Vulnerability
Solution:
Though 0.9.2 fixes this problem, there are additional issues with the 0.9.2 release. Users are advised to use the 0.9.3 release.
Vendor fixes available:
Gerald Combs Ethereal 0.8.13
Ethereal Group Ethereal 0.8.18
Ethereal Group Ethereal 0.9.1
Solution:
Though 0.9.2 fixes this problem, there are additional issues with the 0.9.2 release. Users are advised to use the 0.9.3 release.
Vendor fixes available:
Gerald Combs Ethereal 0.8.13
-
Conectiva ethereal-0.9.3-1U50_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.0/i386/ethereal-0.9.3-1U50_1cl.i 386.rpm -
Conectiva ethereal-0.9.3-1U51_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.1/i386/ethereal-0.9.3-1U51_1cl.i 386.rpm -
Conectiva ethereal-0.9.3-1U60_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/6.0/RPMS/ethereal-0.9.3-1U60_1cl.i 386.rpm -
Conectiva ethereal-0.9.3-1U70_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/7.0/RPMS/ethereal-0.9.3-1U70_1cl.i 386.rpm -
Ethereal Group ethereal-0.9.3.tar.gz
http://www.ethereal.com/distribution/ethereal-0.9.3.tar.gz -
FreeBSD ethereal-0.9.3.tgz
ftp://ftp.FreeBSD.org/pub/FreeBSD/ports/i386/packages-4-stable/All/eth ereal-0.9.3.tgz
Ethereal Group Ethereal 0.8.18
-
Red Hat ethereal-0.9.4-0.7.2.0.i386.rpm
ftp://updates.redhat.com/7.2/en/os/i386/ethereal-0.9.4-0.7.2.0.i386.rp m -
Red Hat ethereal-0.9.4-0.7.2.0.ia64.rpm
ftp://updates.redhat.com/7.2/en/os/ia64/ethereal-0.9.4-0.7.2.0.ia64.rp m -
Red Hat ethereal-gnome-0.9.4-0.7.2.0.i386.rpm
ftp://updates.redhat.com/7.2/en/os/i386/ethereal-gnome-0.9.4-0.7.2.0.i 386.rpm -
Red Hat ethereal-gnome-0.9.4-0.7.2.0.ia64.rpm
ftp://updates.redhat.com/7.2/en/os/ia64/ethereal-gnome-0.9.4-0.7.2.0.i a64.rpm
Ethereal Group Ethereal 0.9.1
-
Ethereal Group ethereal-0.9.3.tar.gz
http://www.ethereal.com/distribution/ethereal-0.9.3.tar.gz
References
Ethereal Malformed SNMP Denial of Service Vulnerability
References:
References:
- BID 4134: HP JetDirect SNMP Denial of Service Vulnerability (SecurityFocus)
- CA-2002-03 (CERT)
- PROTOS Test-Suite: c06-snmpv1 (PROTOS Project)
- SNMP and LDAP string handling (Ethereal)
- The Ethereal Network Analyzer (Ethereal Group)