CVE-2002-1355: Medium severity ethereal group ethereal vulnerability
Published Dec 17, 2002
·Updated
Multiple integer signedness errors in the BGP dissector in Ethereal 0.9.7 and earlier allow remote attackers to cause a denial of service (infinite loop) via malformed messages.
Affected Software
1 affected component
Ethereal Group Ethereal<=0.9.7
Remediation
Patch Available
Patch Available
Event History
Dec 17, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1355?
CVE-2002-1355 has a medium severity rating due to its potential to cause a denial of service.
2
How do I fix CVE-2002-1355?
To fix CVE-2002-1355, upgrade to Ethereal version 0.9.8 or later which addresses the vulnerability.
3
What type of vulnerability is CVE-2002-1355?
CVE-2002-1355 is classified as an integer signedness error vulnerability leading to a denial of service.
4
What impact does CVE-2002-1355 have on systems?
CVE-2002-1355 can cause systems running affected versions of Ethereal to enter an infinite loop, disrupting service.
5
Which versions of Ethereal are affected by CVE-2002-1355?
CVE-2002-1355 affects Ethereal versions up to and including 0.9.7.