CVE-2003-0925: Buffer Overflow
Published Nov 6, 2003
·Updated
Buffer overflow in Ethereal 0.9.15 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed GTP MSISDN string.
Affected Software
16 affected components
Ethereal Group Ethereal=0.9
Ethereal Group Ethereal=0.9.1
Ethereal Group Ethereal=0.9.2
Ethereal Group Ethereal=0.9.3
Ethereal Group Ethereal=0.9.4
Ethereal Group Ethereal=0.9.5
Ethereal Group Ethereal=0.9.6
Ethereal Group Ethereal=0.9.7
Ethereal Group Ethereal=0.9.8
Ethereal Group Ethereal=0.9.9
Ethereal Group Ethereal=0.9.10
Ethereal Group Ethereal=0.9.11
Ethereal Group Ethereal=0.9.12
Ethereal Group Ethereal=0.9.13
Ethereal Group Ethereal=0.9.14
Ethereal Group Ethereal=0.9.15
Remediation
Patch Available
Patch Available
Patch Available
Event History
Nov 6, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Dec 1, 2003
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0925?
CVE-2003-0925 is considered a high-severity vulnerability due to the potential for remote code execution and denial of service.
2
How do I fix CVE-2003-0925?
To mitigate CVE-2003-0925, users should upgrade to a version of Ethereal later than 0.9.15.
3
What are the affected versions in CVE-2003-0925?
Ethereal versions up to and including 0.9.15 are affected by CVE-2003-0925.
4
What type of vulnerability is CVE-2003-0925?
CVE-2003-0925 is a buffer overflow vulnerability caused by a malformed GTP MSISDN string.
5
Can CVE-2003-0925 lead to arbitrary code execution?
Yes, CVE-2003-0925 may allow remote attackers to execute arbitrary code on the affected system.