CVE-2005-3245: Medium severity Ethereal Group Ethereal vulnerability
Published Oct 27, 2005
·Updated
Unspecified vulnerability in the ONC RPC dissector in Ethereal 0.10.3 to 0.10.12, when the "Dissect unknown RPC program numbers" option is enabled, allows remote attackers to cause a denial of service (memory consumption).
Affected Software
10 affected components
Ethereal Group Ethereal=0.10.10
Ethereal Group Ethereal=0.10.3
Ethereal Group Ethereal=0.10.4
Ethereal Group Ethereal=0.10.7
Ethereal Group Ethereal=0.10.12
Ethereal Group Ethereal=0.10.11
Ethereal Group Ethereal=0.10.5
Ethereal Group Ethereal=0.10.6
Ethereal Group Ethereal=0.10.8
Ethereal Group Ethereal=0.10.9
Remediation
Patch Available
Event History
Oct 27, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-3245?
CVE-2005-3245 has a moderate severity rating due to the potential for denial of service through memory consumption.
2
How do I fix CVE-2005-3245?
To fix CVE-2005-3245, it is recommended to upgrade Ethereal to a version later than 0.10.12.
3
Which versions of Ethereal are affected by CVE-2005-3245?
CVE-2005-3245 affects Ethereal versions 0.10.3 through 0.10.12.
4
What type of attack does CVE-2005-3245 enable?
CVE-2005-3245 enables remote attackers to cause a denial of service.
5
What component of Ethereal is impacted by CVE-2005-3245?
CVE-2005-3245 impacts the ONC RPC dissector in Ethereal.