CVE-2005-1464: Medium severity Ethereal Group Ethereal vulnerability
Published May 5, 2005
·Updated
Multiple unknown vulnerabilities in the (1) KINK, (2) L2TP, (3) MGCP, (4) EIGRP, (5) DLSw, (6) MEGACO, (7) LMP, and (8) RSVP dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (infinite loop).
Affected Software
35 affected components
Ethereal Group Ethereal=0.8
Ethereal Group Ethereal=0.8.13
Ethereal Group Ethereal=0.8.14
Ethereal Group Ethereal=0.8.15
Ethereal Group Ethereal=0.8.18
Ethereal Group Ethereal=0.8.19
Ethereal Group Ethereal=0.9
Ethereal Group Ethereal=0.9.1
Ethereal Group Ethereal=0.9.2
Ethereal Group Ethereal=0.9.3
Ethereal Group Ethereal=0.9.4
Ethereal Group Ethereal=0.9.5
Ethereal Group Ethereal=0.9.6
Ethereal Group Ethereal=0.9.7
Ethereal Group Ethereal=0.9.8
Ethereal Group Ethereal=0.9.9
Ethereal Group Ethereal=0.9.10
Ethereal Group Ethereal=0.9.11
Ethereal Group Ethereal=0.9.12
Ethereal Group Ethereal=0.9.13
Ethereal Group Ethereal=0.9.14
Ethereal Group Ethereal=0.9.15
Ethereal Group Ethereal=0.9.16
Ethereal Group Ethereal=0.10
Ethereal Group Ethereal=0.10.0
Ethereal Group Ethereal=0.10.1
Ethereal Group Ethereal=0.10.2
Ethereal Group Ethereal=0.10.3
Ethereal Group Ethereal=0.10.4
Ethereal Group Ethereal=0.10.5
Ethereal Group Ethereal=0.10.6
Ethereal Group Ethereal=0.10.7
Ethereal Group Ethereal=0.10.8
Ethereal Group Ethereal=0.10.9
Ethereal Group Ethereal=0.10.10
Event History
May 5, 2005
CVE Published
via NVD·04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1464?
CVE-2005-1464 has a severity level that allows remote attackers to cause a denial of service due to multiple vulnerabilities in Ethereal.
2
How do I fix CVE-2005-1464?
The fix for CVE-2005-1464 involves upgrading to Ethereal version 0.10.11 or later.
3
What software is affected by CVE-2005-1464?
CVE-2005-1464 affects multiple versions of Ethereal, including versions from 0.8 to 0.10.10.
4
Can CVE-2005-1464 be exploited remotely?
Yes, CVE-2005-1464 can be exploited remotely, leading to a denial of service.
5
What types of protocols are involved in CVE-2005-1464?
CVE-2005-1464 involves vulnerabilities in multiple dissectors, including KINK, L2TP, MGCP, EIGRP, DLSw, MEGACO, LMP, and RSVP.