CVE-2003-1012: Medium severity Ethereal Group Ethereal vulnerability
Published Dec 17, 2003
·Updated
The SMB dissector in Ethereal before 0.10.0 allows remote attackers to cause a denial of service via a malformed SMB packet that triggers a segmentation fault during processing of Selected packets.
Affected Software
17 affected components
Ethereal Group Ethereal=0.9.2
Ethereal Group Ethereal=0.9.6
Ethereal Group Ethereal=0.9.5
Ethereal Group Ethereal=0.9.14
Ethereal Group Ethereal=0.9.15
Ethereal Group Ethereal=0.9.10
Ethereal Group Ethereal=0.9.8
Ethereal Group Ethereal=0.9.16
Ethereal Group Ethereal=0.9.3
Ethereal Group Ethereal=0.9
Ethereal Group Ethereal=0.9.1
Ethereal Group Ethereal=0.9.9
Ethereal Group Ethereal=0.9.7
Ethereal Group Ethereal=0.9.12
Ethereal Group Ethereal=0.9.13
Ethereal Group Ethereal=0.9.11
Ethereal Group Ethereal=0.9.4
Remediation
Patch Available
Patch Available
Patch Available
Event History
Dec 17, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Jan 5, 2004
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-1012?
CVE-2003-1012 is classified as a high severity vulnerability due to its potential to cause a denial of service.
2
How do I fix CVE-2003-1012?
To fix CVE-2003-1012, update Ethereal to version 0.10.0 or later.
3
Which versions of Ethereal are vulnerable to CVE-2003-1012?
Ethereal versions prior to 0.10.0, specifically 0.9.2 to 0.9.16, are vulnerable to CVE-2003-1012.
4
What kind of attack does CVE-2003-1012 exploit?
CVE-2003-1012 exploits a vulnerability in the SMB dissector that can be triggered by malformed SMB packets.
5
What type of issue does CVE-2003-1012 cause?
CVE-2003-1012 causes a segmentation fault in Ethereal, leading to a denial of service.