CVE-2005-3241: Medium severity Ethereal Group Ethereal vulnerability
Published Oct 27, 2005
·Updated
Multiple vulnerabilities in Ethereal 0.10.12 and earlier allow remote attackers to cause a denial of service (memory consumption) via unspecified vectors in the (1) ISAKMP, (2) FC-FCS, (3) RSVP, and (4) ISIS LSP dissector.
Affected Software
32 affected components
Ethereal Group Ethereal=0.8.18
Ethereal Group Ethereal=0.8.19
Ethereal Group Ethereal=0.9.0
Ethereal Group Ethereal=0.9.1
Ethereal Group Ethereal=0.9.2
Ethereal Group Ethereal=0.9.3
Ethereal Group Ethereal=0.9.4
Ethereal Group Ethereal=0.9.5
Ethereal Group Ethereal=0.9.6
Ethereal Group Ethereal=0.9.7
Ethereal Group Ethereal=0.9.8
Ethereal Group Ethereal=0.9.9
Ethereal Group Ethereal=0.9.10
Ethereal Group Ethereal=0.9.11
Ethereal Group Ethereal=0.9.12
Ethereal Group Ethereal=0.9.13
Ethereal Group Ethereal=0.9.14
Ethereal Group Ethereal=0.9.15
Ethereal Group Ethereal=0.9.16
Ethereal Group Ethereal=0.10.0
Ethereal Group Ethereal=0.10.1
Ethereal Group Ethereal=0.10.2
Ethereal Group Ethereal=0.10.3
Ethereal Group Ethereal=0.10.4
Ethereal Group Ethereal=0.10.5
Ethereal Group Ethereal=0.10.6
Ethereal Group Ethereal=0.10.7
Ethereal Group Ethereal=0.10.8
Ethereal Group Ethereal=0.10.9
Ethereal Group Ethereal=0.10.10
Ethereal Group Ethereal=0.10.11
Ethereal Group Ethereal=0.10.12
Remediation
Patch Available
Event History
Oct 27, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-3241?
CVE-2005-3241 has a moderate severity level, primarily causing denial of service through memory consumption.
2
How do I fix CVE-2005-3241?
To fix CVE-2005-3241, upgrade to versions of Ethereal later than 0.10.12.
3
Which versions of Ethereal are affected by CVE-2005-3241?
Ethereal versions 0.10.12 and earlier are affected by CVE-2005-3241.
4
What kind of attacks are possible with CVE-2005-3241?
CVE-2005-3241 allows remote attackers to exploit multiple dissectors, resulting in a denial of service.
5
Is CVE-2005-3241 still a concern for modern systems?
While CVE-2005-3241 is less relevant today given the age of the affected software, any systems still running vulnerable versions should be updated.