CVE-2005-0007: Medium severity Ethereal Group Ethereal vulnerability
Published Jan 29, 2005
·Updated
Unknown vulnerability in the DLSw dissector in Ethereal 0.10.6 through 0.10.8 allows remote attackers to cause a denial of service (application crash from assertion).
Affected Software
3 affected components
Ethereal Group Ethereal=0.10.6
Ethereal Group Ethereal=0.10.7
Ethereal Group Ethereal=0.10.8
Remediation
Patch Available
Event History
Jan 29, 2005
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0007?
CVE-2005-0007 has a severity rating that indicates it allows remote attackers to cause a denial of service by crashing the application.
2
How do I fix CVE-2005-0007?
To fix CVE-2005-0007, it is recommended to upgrade Ethereal to a version that is not affected, specifically versions beyond 0.10.8.
3
Which versions of Ethereal are affected by CVE-2005-0007?
Versions 0.10.6, 0.10.7, and 0.10.8 of Ethereal are affected by CVE-2005-0007.
4
What kind of attack does CVE-2005-0007 facilitate?
CVE-2005-0007 facilitates a denial of service attack that results in an application crash.
5
Is there a workaround for CVE-2005-0007?
There is no known workaround for CVE-2005-0007, so upgrading to a secure version is the only solution.