CVE-2004-1761: Medium severity Ethereal Group Ethereal vulnerability
Published Dec 31, 2004
·Updated
Unknown vulnerability in Ethereal 0.8.13 to 0.10.2 allows attackers to cause a denial of service (segmentation fault) via a malformed color filter file.
Affected Software
29 affected components
Ethereal Group Ethereal=0.8.13
Ethereal Group Ethereal=0.8.14
Ethereal Group Ethereal=0.8.15
Ethereal Group Ethereal=0.8.16
Ethereal Group Ethereal=0.8.17a
Ethereal Group Ethereal=0.8.18
Ethereal Group Ethereal=0.8.19
Ethereal Group Ethereal=0.8.20
Ethereal Group Ethereal=0.9.0
Ethereal Group Ethereal=0.9.1
Ethereal Group Ethereal=0.9.2
Ethereal Group Ethereal=0.9.3
Ethereal Group Ethereal=0.9.4
Ethereal Group Ethereal=0.9.5
Ethereal Group Ethereal=0.9.6
Ethereal Group Ethereal=0.9.7
Ethereal Group Ethereal=0.9.8
Ethereal Group Ethereal=0.9.9
Ethereal Group Ethereal=0.9.10
Ethereal Group Ethereal=0.9.11
Ethereal Group Ethereal=0.9.12
Ethereal Group Ethereal=0.9.13
Ethereal Group Ethereal=0.9.14
Ethereal Group Ethereal=0.9.15
Ethereal Group Ethereal=0.9.16
Ethereal Group Ethereal=0.10.0
Ethereal Group Ethereal=0.10.0a
Ethereal Group Ethereal=0.10.1
Ethereal Group Ethereal=0.10.2
Remediation
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
Mar 10, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1761?
CVE-2004-1761 has a severity rating that indicates it can lead to denial of service conditions.
2
How do I fix CVE-2004-1761?
To fix CVE-2004-1761, upgrade to a version of Ethereal that is not affected, such as versions later than 0.10.2.
3
What versions of Ethereal are affected by CVE-2004-1761?
CVE-2004-1761 affects Ethereal versions 0.8.13 to 0.10.2, including several specified minor versions.
4
What type of attack does CVE-2004-1761 allow?
CVE-2004-1761 allows attackers to cause a segmentation fault leading to a denial of service.
5
Can I use Ethereal safely despite CVE-2004-1761?
It is unsafe to use vulnerable versions of Ethereal due to CVE-2004-1761 without applying the recommended updates.