CVE-2004-0633: Integer Overflow
Published Jul 8, 2004
·Updated
The iSNS dissector for Ethereal 0.10.3 through 0.10.4 allows remote attackers to cause a denial of service (process abort) via an integer overflow.
Affected Software
12 affected components
Ethereal Group Ethereal=0.10.3
Ethereal Group Ethereal=0.10.4
Gentoo Linux
Mandrakesoft Mandrake Linux=9.2
Mandrakesoft Mandrake Linux=10.0
redhat Enterprise Linux=2.1
redhat Enterprise Linux=2.1
redhat Enterprise Linux=2.1
redhat Enterprise Linux=3.0
redhat Enterprise Linux=3.0
redhat Enterprise Linux=3.0
redhat Linux Advanced Workstation=2.1
Remediation
Patch Available
Event History
Jul 8, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0633?
CVE-2004-0633 has been rated with a severity that can lead to a denial of service due to an integer overflow in Ethereal.
2
How do I fix CVE-2004-0633?
To fix CVE-2004-0633, upgrade to a version of Ethereal that is not affected, specifically any version after 0.10.4.
3
Which versions of Ethereal are affected by CVE-2004-0633?
CVE-2004-0633 affects Ethereal versions 0.10.3 and 0.10.4.
4
What type of vulnerability is CVE-2004-0633?
CVE-2004-0633 is identified as a denial of service vulnerability due to an integer overflow.
5
Can CVE-2004-0633 be exploited remotely?
Yes, CVE-2004-0633 can be exploited by remote attackers to cause a process abort.