CVE-2003-0429: Buffer Overflow
Published Jun 18, 2003
·Updated
The OSI dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via invalid IPv4 or IPv6 prefix lengths, possibly triggering a buffer overflow.
Affected Software
1 affected component
Ethereal Group Ethereal<=0.9.12
Remediation
Patch Available
Patch Available
Event History
Jun 18, 2003
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Jul 24, 2003
Data Sourced
via NVD·04:00 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0429?
CVE-2003-0429 has a high severity rating due to its potential for remote denial of service and arbitrary code execution.
2
How do I fix CVE-2003-0429?
To fix CVE-2003-0429, upgrade to Ethereal version 0.9.13 or later.
3
What types of attacks does CVE-2003-0429 enable?
CVE-2003-0429 enables remote denial of service attacks and may allow for arbitrary code execution.
4
Which versions of Ethereal are affected by CVE-2003-0429?
Ethereal versions 0.9.12 and earlier are affected by CVE-2003-0429.
5
What component of Ethereal is vulnerable in CVE-2003-0429?
The OSI dissector component in Ethereal is vulnerable in CVE-2003-0429.