CVE-2005-0084: Buffer Overflow
Published Jan 29, 2005
·Updated
Buffer overflow in the X11 dissector in Ethereal 0.8.10 through 0.10.8 allows remote attackers to execute arbitrary code via a crafted packet.
Affected Software
38 affected components
Ethereal Group Ethereal=0.10.1
Ethereal Group Ethereal=0.8
Ethereal Group Ethereal=0.9.2
Ethereal Group Ethereal=0.9.6
Ethereal Group Ethereal=0.8.16
Ethereal Group Ethereal=0.10.0a
Ethereal Group Ethereal=0.8.17a
Ethereal Group Ethereal=0.8.20
Ethereal Group Ethereal=0.9.5
Ethereal Group Ethereal=0.8.19
Ethereal Group Ethereal=0.10.2
Ethereal Group Ethereal=0.8.18
Ethereal Group Ethereal=0.9.14
Ethereal Group Ethereal=0.9.0
Ethereal Group Ethereal=0.9.15
Ethereal Group Ethereal=0.9.10
Ethereal Group Ethereal=0.9.8
Ethereal Group Ethereal=0.10.3
Ethereal Group Ethereal=0.10.4
Ethereal Group Ethereal=0.10.7
Ethereal Group Ethereal=0.9.16
Ethereal Group Ethereal=0.8.13
Ethereal Group Ethereal=0.10.5
Ethereal Group Ethereal=0.10.0
Ethereal Group Ethereal=0.8.15
Ethereal Group Ethereal=0.9.3
Ethereal Group Ethereal=0.10
Ethereal Group Ethereal=0.9.13
Ethereal Group Ethereal=0.9.9
Ethereal Group Ethereal=0.8.14
Ethereal Group Ethereal=0.9.11
Ethereal Group Ethereal=0.9.7
Ethereal Group Ethereal=0.9.4
Ethereal Group Ethereal=0.9.1
Ethereal Group Ethereal=0.10.6
Ethereal Group Ethereal=0.10.8
Ethereal Group Ethereal=0.9
Ethereal Group Ethereal=0.9.12
Remediation
Patch Available
Patch Available
Patch Available
Event History
Jan 29, 2005
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0084?
CVE-2005-0084 is classified as a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2005-0084?
To fix CVE-2005-0084, update to a version of Ethereal later than 0.10.8 that addresses this buffer overflow.
3
What software is affected by CVE-2005-0084?
CVE-2005-0084 affects multiple versions of Ethereal, specifically versions 0.8.10 through 0.10.8.
4
What kind of attack is associated with CVE-2005-0084?
CVE-2005-0084 allows remote attackers to execute arbitrary code via a crafted packet sent to the vulnerable Ethereal software.
5
Is there a workaround for CVE-2005-0084?
As a workaround for CVE-2005-0084, consider disabling the X11 dissector in Ethereal until you can upgrade.