Ethereal TDS Dissector Malformed Packet Memory Corruption Vulnerability
BID:6564
Info
Ethereal TDS Dissector Malformed Packet Memory Corruption Vulnerability
| Bugtraq ID: | 6564 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2002-1356 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 08 2002 12:00AM |
| Updated: | Jul 11 2009 07:17PM |
| Credit: | This issue was announced by the vendor. |
| Vulnerable: |
Ethereal Group Ethereal 0.9.7 Ethereal Group Ethereal 0.9.6 Ethereal Group Ethereal 0.9.5 Ethereal Group Ethereal 0.9.4 Ethereal Group Ethereal 0.9.3 Ethereal Group Ethereal 0.9.2 Ethereal Group Ethereal 0.9.1 Ethereal Group Ethereal 0.9 Ethereal Group Ethereal 0.8.18 Ethereal Group Ethereal 0.8 |
| Not Vulnerable: |
Ethereal Group Ethereal 0.9.8 |
Discussion
Ethereal TDS Dissector Malformed Packet Memory Corruption Vulnerability
The TDS dissector is prone to a memory corruption vulnerability.
The TDS dissector is prone to a memory corruption vulnerability. It is possible to trigger this condition with a specially malformed TDS packet. As a result, it may be possible corrupt memory with attacker-supplied values, resulting in arbitrary code execution. Memory corruption may also cause a denial of service.
The TDS dissector is prone to a memory corruption vulnerability.
The TDS dissector is prone to a memory corruption vulnerability. It is possible to trigger this condition with a specially malformed TDS packet. As a result, it may be possible corrupt memory with attacker-supplied values, resulting in arbitrary code execution. Memory corruption may also cause a denial of service.