CVE-2005-1281: Medium severity Ethereal Group Ethereal vulnerability
Published Apr 26, 2005
·Updated
Ethereal 0.10.10 and earlier allows remote attackers to cause a denial of service (infinite loop) via a crafted RSVP packet of length 4.
Affected Software
34 affected components
Ethereal Group Ethereal=0.8
Ethereal Group Ethereal=0.8.13
Ethereal Group Ethereal=0.8.14
Ethereal Group Ethereal=0.8.15
Ethereal Group Ethereal=0.8.18
Ethereal Group Ethereal=0.8.19
Ethereal Group Ethereal=0.9
Ethereal Group Ethereal=0.9.1
Ethereal Group Ethereal=0.9.2
Ethereal Group Ethereal=0.9.3
Ethereal Group Ethereal=0.9.4
Ethereal Group Ethereal=0.9.5
Ethereal Group Ethereal=0.9.6
Ethereal Group Ethereal=0.9.7
Ethereal Group Ethereal=0.9.8
Ethereal Group Ethereal=0.9.9
Ethereal Group Ethereal=0.9.10
Ethereal Group Ethereal=0.9.11
Ethereal Group Ethereal=0.9.12
Ethereal Group Ethereal=0.9.13
Ethereal Group Ethereal=0.9.14
Ethereal Group Ethereal=0.9.15
Ethereal Group Ethereal=0.9.16
Ethereal Group Ethereal=0.10
Ethereal Group Ethereal=0.10.1
Ethereal Group Ethereal=0.10.2
Ethereal Group Ethereal=0.10.3
Ethereal Group Ethereal=0.10.4
Ethereal Group Ethereal=0.10.5
Ethereal Group Ethereal=0.10.6
Ethereal Group Ethereal=0.10.7
Ethereal Group Ethereal=0.10.8
Ethereal Group Ethereal=0.10.9
Ethereal Group Ethereal=0.10.10
Event History
Apr 26, 2005
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1281?
The severity of CVE-2005-1281 is categorized as a denial of service vulnerability.
2
How do I fix CVE-2005-1281?
To fix CVE-2005-1281, update Ethereal to the latest version where this vulnerability has been addressed.
3
Which versions of Ethereal are affected by CVE-2005-1281?
CVE-2005-1281 affects Ethereal version 0.10.10 and earlier, including multiple older versions.
4
What type of attack does CVE-2005-1281 enable?
CVE-2005-1281 enables remote attackers to cause a denial of service by triggering an infinite loop.
5
Can CVE-2005-1281 be exploited remotely?
Yes, CVE-2005-1281 can be exploited remotely via crafted RSVP packets sent to affected Ethereal versions.