CVE-2005-1463: High severity Ethereal Group Ethereal vulnerability
Published May 5, 2005
·Updated
Multiple format string vulnerabilities in the (1) DHCP and (2) ANSI A dissectors in Ethereal before 0.10.11 may allow remote attackers to execute arbitrary code.
Affected Software
34 affected components
Ethereal Group Ethereal=0.8
Ethereal Group Ethereal=0.8.13
Ethereal Group Ethereal=0.8.14
Ethereal Group Ethereal=0.8.15
Ethereal Group Ethereal=0.8.18
Ethereal Group Ethereal=0.8.19
Ethereal Group Ethereal=0.9
Ethereal Group Ethereal=0.9.1
Ethereal Group Ethereal=0.9.2
Ethereal Group Ethereal=0.9.3
Ethereal Group Ethereal=0.9.4
Ethereal Group Ethereal=0.9.5
Ethereal Group Ethereal=0.9.6
Ethereal Group Ethereal=0.9.7
Ethereal Group Ethereal=0.9.8
Ethereal Group Ethereal=0.9.9
Ethereal Group Ethereal=0.9.10
Ethereal Group Ethereal=0.9.11
Ethereal Group Ethereal=0.9.12
Ethereal Group Ethereal=0.9.13
Ethereal Group Ethereal=0.9.14
Ethereal Group Ethereal=0.9.15
Ethereal Group Ethereal=0.9.16
Ethereal Group Ethereal=0.10
Ethereal Group Ethereal=0.10.1
Ethereal Group Ethereal=0.10.2
Ethereal Group Ethereal=0.10.3
Ethereal Group Ethereal=0.10.4
Ethereal Group Ethereal=0.10.5
Ethereal Group Ethereal=0.10.6
Ethereal Group Ethereal=0.10.7
Ethereal Group Ethereal=0.10.8
Ethereal Group Ethereal=0.10.9
Ethereal Group Ethereal=0.10.10
Remediation
Patch Available
Patch Available
Event History
May 5, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1463?
CVE-2005-1463 has a high severity rating due to the potential for remote code execution.
2
How do I fix CVE-2005-1463?
To fix CVE-2005-1463, update Ethereal to version 0.10.11 or later.
3
What software is affected by CVE-2005-1463?
CVE-2005-1463 affects multiple versions of Ethereal before 0.10.11, including versions 0.8, 0.9, and 0.10.
4
What types of vulnerabilities are associated with CVE-2005-1463?
CVE-2005-1463 is associated with multiple format string vulnerabilities in the DHCP and ANSI A dissectors.
5
Can CVE-2005-1463 be exploited remotely?
Yes, CVE-2005-1463 can be exploited remotely, allowing attackers to execute arbitrary code.